PT-2022-22457 · Openteknik Llc · Ossn Open Source Social Network
Grim The Ripper Team
·
Published
2022-07-25
·
Updated
2022-07-29
·
CVE-2022-34961
CVSS v3.1
5.4
Medium
| Vector | AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N |
Name of the Vulnerable Software and Affected Versions
OpenTeknik LLC OSSN OPEN SOURCE SOCIAL NETWORK version 6.3 LTS
Description
The issue is related to a stored cross-site scripting (XSS) vulnerability. This vulnerability is present in the Users Timeline module.
Recommendations
For OpenTeknik LLC OSSN OPEN SOURCE SOCIAL NETWORK version 6.3 LTS, consider disabling the Users Timeline module until a patch is available to prevent potential exploitation of the stored cross-site scripting vulnerability.
Exploit
Fix
XSS
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Ossn Open Source Social Network