The 'sReferencia', 'sDescripcion', 'txtCodigo' and 'txtDescripcion' parameters, in the frmGestionStock.aspx and frmEditServicio.aspx files in TCMAN GIM v8.0.1, could allow an attacker to perform persistent XSS attacks.
Fixes

Solution

This vulnerability has been solved by TCMAN in GIM v8.0.1 (r7116), (20220504).


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: INCIBE

Published:

Updated: 2024-09-05T18:06:41.819Z

Reserved: 2022-07-18T12:09:35.737Z

Link: CVE-2022-36277

cve-icon Vulnrichment

Updated: 2024-08-03T10:00:04.200Z

cve-icon NVD

Status : Modified

Published: 2023-10-04T16:15:10.103

Modified: 2024-11-21T07:12:42.387

Link: CVE-2022-36277

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.