CVE-2022-47968

Heimdall Application Dashboard through 2.5.4 allows reflected and stored XSS via "Application name" to the "Add application" page. The stored XSS will be triggered in the "Application list" page.
References
Link Resource
https://github.com/linuxserver/Heimdall/issues/1086 Exploit Issue Tracking
https://samy.link/blog Third Party Advisory
Configurations

Configuration 1

cpe:2.3:a:linuxserver:heimdall_application_dashboard:*:*:*:*:*:*:*:*

Information

Published : 2022-12-27 06:15

Updated : 2023-01-05 08:33


NVD link : CVE-2022-47968

Mitre link : CVE-2022-47968

Products Affected
No products.
CWE