CVE-2022-4401

LOW

pallidlight online-course-selection-system - Cross-Site Scripting

Title source: llm
STIX 2.1

Description

A vulnerability was found in pallidlight online-course-selection-system. It has been classified as problematic. Affected is an unknown function. The manipulation leads to cross site scripting. It is possible to launch the attack remotely. The identifier of this vulnerability is VDB-215268.

References (2)

Core 2
Core References
Third Party Advisory
https://vuldb.com/?id.215268

Scores

CVSS v3 3.5
EPSS 0.0030
EPSS Percentile 53.9%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-79 CWE-707
Status published
Products (1)
pallidlight_online_course_selection_system_project/pallidlight_online_course_selection_system
Published Dec 11, 2022
Tracked Since Feb 18, 2026