An issue was discovered in DSK... CVE-2022-24692

- AV AC AU C I A
发布: 2022-07-18
修订: 2024-11-21

An issue was discovered in DSK DSKNet 2.16.136.0 and 2.17.136.5. The new menu option within the general Parameters page is vulnerable to stored XSS. The attacker can create a menu option, make it visible to every application user, and conduct session hijacking, account takeover, or malicious code delivery, with the final goal of achieving client-side code execution.

0%
暂无可用Exp或PoC
当前有2条受影响产品信息