Description
A reflected XSS vulnerability has been found in Axiell Iguana CMS, allowing an attacker to execute code in a victim's browser. The module parameter on the Service.template.cls endpoint does not properly neutralise user input, resulting in the vulnerability.
No analysis available yet.
Remediation
Vendor Solution
Upgrade to the latest version of Iguana CMS.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-47973 | A reflected XSS vulnerability has been found in Axiell Iguana CMS, allowing an attacker to execute code in a victim's browser. The module parameter on the Service.template.cls endpoint does not properly neutralise user input, resulting in the vulnerability. |
References
History
Thu, 10 Apr 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: DIVD
Published:
Updated: 2025-04-10T18:05:14.579Z
Reserved: 2022-11-08T14:17:26.668Z
Link: CVE-2022-45051
Updated: 2024-08-03T14:01:31.543Z
Status : Modified
Published: 2023-01-04T19:15:09.383
Modified: 2024-11-21T07:28:41.040
Link: CVE-2022-45051
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD