PT-2022-17976 · Unknown · Online Banking System Protect

Erik451

·

Published

2022-03-30

·

Updated

2025-12-16

·

CVE-2022-26644

CVSS v3.1

6.1

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions Online Banking System Protect version 1.0
Description The issue concerns multiple cross-site scripting (XSS) vulnerabilities. These vulnerabilities are accessible via parameters on the user profile, system info, and accounts management pages.
Recommendations For Online Banking System Protect version 1.0, consider restricting access to the vulnerable parameters on the user profile, system info, and accounts management pages until a patch is available. As a temporary workaround, avoid using these parameters in the affected areas. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

XSS

Weakness Enumeration

Related Identifiers

CVE-2022-26644

Affected Products

Online Banking System Protect