Miggo Logo

GHSA-7644-cxp8-h23r: ibexa/admin-ui vulnerable to Cross-site Scripting in content type name/shortname

N/A

CVSS Score

Basic Information

CVE ID
-
EPSS Score
-
CWE
-
Published
11/10/2022
Updated
1/7/2023
KEV Status
No
Technology
TechnologyPHP

Technical Details

CVSS Vector
-
Package NameEcosystemVulnerable VersionsFirst Patched Version
ibexa/admin-uicomposer>= 4.2.0, < 4.2.34.2.3

Vulnerability Intelligence
Miggo AIMiggo AI

Miggo AIRoot Cause Analysis:
In progress

WAF Protection Rules

WAF Rule

*riti**l s*v*rity. It is possi*l* to inj**t J*v*S*ript XSS in t** *ont*nt typ* *ntri*s "n*m*" *n* "s*ort n*m*". To *xploit t*is, on* must *lr***y **v* p*rmission to **it *ont*nt typ*s, w*i** limits it in m*ny **s*s to p*opl* w*o *r* *lr***y **ministr

Reasoning

No *n*lysis *v*il**l*