PT-2022-17976 · Unknown · Online Banking System Protect

·

CVE-2022-26644

·

Published

2022-03-30

·

Updated

2025-12-16

CVSS v3.1

6.1

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions Online Banking System Protect version 1.0
Description The issue concerns multiple cross-site scripting (XSS) vulnerabilities. These vulnerabilities are accessible via parameters on the user profile, system info, and accounts management pages.
Recommendations For Online Banking System Protect version 1.0, consider restricting access to the vulnerable parameters on the user profile, system info, and accounts management pages until a patch is available. As a temporary workaround, avoid using these parameters in the affected areas. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

XSS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2022-26644

Affected Products

Online Banking System Protect