CVE-2022-4523

LOW

virtual_exim_2 < 2022-01-23 - Cross-Site Scripting

Title source: llm
STIX 2.1

Description

A vulnerability, which was classified as problematic, has been found in vexim2. This issue affects some unknown processing. The manipulation leads to cross site scripting. The attack may be initiated remotely. The name of the patch is 21c0a60d12e9d587f905cd084b2c70f9b1592065. It is recommended to apply a patch to fix this issue. The associated identifier of this vulnerability is VDB-215903.

References (3)

Core 3
Core References
Issue Tracking, Patch, Third Party Advisory
https://github.com/vexim/vexim2/pull/274
Permissions Required, Third Party Advisory
https://vuldb.com/?id.215903

Scores

CVSS v3 3.5
EPSS 0.0051
EPSS Percentile 39.2%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N

Details

CWE
CWE-79 CWE-707
Status published
Products (1)
virtual_exim_project/virtual_exim_2 < 2022-01-23
Published Dec 15, 2022
Tracked Since Feb 18, 2026