PT-2022-17739 · Tms · Tms

Afeng2016-So

·

Published

2022-03-20

·

Updated

2022-03-28

·

CVE-2022-26246

CVSS v3.1

6.1

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions TMS version 2.28.0
Description A cross-site scripting (XSS) issue was found in the /TMS/admin/setting/mail/createorupdate component.
Recommendations For TMS version 2.28.0, update to a version that includes a fix for this issue, as no specific workaround is provided for this version.

Exploit

Fix

XSS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2022-26246

Affected Products

Tms