PT-2022-20304 · Unknown · Terminalfour

Published

2022-05-16

·

Updated

2022-10-27

·

CVE-2022-30770

CVSS v3.1

6.1

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions Terminalfour versions 8.2.x prior to 8.2.18.2.1 Terminalfour versions 8.2.x prior to 8.2.18.5 Terminalfour versions 8.3.x prior to 8.3.8
Description The issue allows an attacker to exploit a vulnerability that could mislead an administrator and steal their credentials. This is achieved through an XSS vulnerability.
Recommendations For Terminalfour versions 8.2.x prior to 8.2.18.2.1, update to version 8.2.18.2.1 to resolve the issue. For Terminalfour versions 8.2.x prior to 8.2.18.5, update to version 8.2.18.5 to resolve the issue. For Terminalfour versions 8.3.x prior to 8.3.8, update to version 8.3.8 to resolve the issue.

Exploit

Fix

XSS

Weakness Enumeration

Related Identifiers

CVE-2022-30770

Affected Products

Terminalfour