PT-2022-27577 · Inex · Inex Ipx-Manager

Published

2022-12-16

·

Updated

2022-12-21

·

CVE-2022-4559

CVSS v3.1

6.1

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions INEX IPX-Manager versions up to 6.2.0
Description A vulnerability was found in the file resources/views/customer/list.foil.php, which can lead to cross site scripting. The attack can be initiated remotely.
Recommendations For INEX IPX-Manager versions up to 6.2.0, upgrade to version 6.3.0 to address this issue. As a temporary workaround, consider restricting access to the affected file resources/views/customer/list.foil.php until the upgrade is applied.

Fix

Improper Neutralization

Weakness Enumeration

Related Identifiers

CVE-2022-4559

Affected Products

Inex Ipx-Manager