One Article Review

Accueil - L'article:
Source CVE.webp CVE Liste
Identifiant 8315806
Date de publication 2023-03-05 20:15:08 (vue: 2023-03-05 22:07:05)
Titre CVE-2022-4927
Texte A vulnerability was found in ualbertalib NEOSDiscovery 1.0.70 and classified as problematic. This issue affects some unknown processing of the file app/views/bookmarks/_refworks.html.erb. The manipulation leads to use of web link to untrusted target with window.opener access. The attack may be initiated remotely. Upgrading to version 1.0.71 is able to address this issue. The name of the patch is abe9f57123e0c278ae190cd7402a623d66c51375. It is recommended to upgrade the affected component. The associated identifier of this vulnerability is VDB-222287.
Envoyé Oui
Condensat 2022 222287 4927 abe9f57123e0c278ae190cd7402a623d66c51375 able access address affected affects app/views/bookmarks/ associated attack classified component cve erb file found html identifier initiated issue leads link manipulation may name neosdiscovery opener patch problematic processing recommended refworks remotely some target ualbertalib unknown untrusted upgrade upgrading use vdb version vulnerability web window
Tags Vulnerability Guideline
Stories
Notes
Move


L'article ne semble pas avoir été repris aprés sa publication.


L'article ne semble pas avoir été repris sur un précédent.
My email: