PT-2022-27253 · Unknown · Plm Help Server V4.2
Published
2022-12-13
·
Updated
2025-04-22
·
CVE-2022-44575
CVSS v3.1
6.1
Medium
| Vector | AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N |
Name of the Vulnerable Software and Affected Versions
PLM Help Server V4.2 (All versions)
Description
A reflected cross-site scripting (XSS) vulnerability exists in the web interface of the affected application. This could allow an attacker to execute malicious javascript code by tricking users into accessing a malicious link.
Recommendations
For PLM Help Server V4.2, consider disabling access to the web interface until a patch is available. Restrict access to the application to minimize the risk of exploitation. Avoid using links from untrusted sources to prevent potential attacks. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
XSS
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Plm Help Server V4.2