The 'sReferencia', 'sDescripcion', 'txtCodigo' and 'txtDescripcion' parameters, in the frmGestionStock.aspx and frmEditServicio.aspx files in TCMAN GIM v8.0.1, could allow an attacker to perform persistent XSS attacks.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-38994 | The 'sReferencia', 'sDescripcion', 'txtCodigo' and 'txtDescripcion' parameters, in the frmGestionStock.aspx and frmEditServicio.aspx files in TCMAN GIM v8.0.1, could allow an attacker to perform persistent XSS attacks. |
Fixes
Solution
This vulnerability has been solved by TCMAN in GIM v8.0.1 (r7116), (20220504).
Workaround
No workaround given by the vendor.
References
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: INCIBE
Published:
Updated: 2024-09-05T18:06:41.819Z
Reserved: 2022-07-18T12:09:35.737Z
Link: CVE-2022-36277
Updated: 2024-08-03T10:00:04.200Z
Status : Modified
Published: 2023-10-04T16:15:10.103
Modified: 2024-11-21T07:12:42.387
Link: CVE-2022-36277
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD