nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2022-46073 CVE-2022-46073
MEDIUMNuclei
Helmet Store Showroom - Cross Site Scripting
Record summary
CVE-2022-46073 has a selected CVSS score of 6.1 (medium); EIP currently links 1 Nuclei template.
Description
Helmet Store Showroom 1.0 is vulnerable to Cross Site Scripting (XSS).
Description source: CVE List
Exploitation context
Available material
- Nuclei templates
- 1
CISA SSVC decision
ExploitationPoC
AutomatableNo
Technical impactPartial
CISA Coordinator · SSVC 2.0.3 · Evaluated Apr 22, 2025 · Source: CVE List
Nuclei templates
1ProjectDiscoveryMEDIUMHelmet Store Showroom - Cross Site ScriptingCVSS 6.1
Helmet Store Showroom 1.0 is vulnerable to Cross Site Scripting (XSS).
Impact
Successful exploitation of this vulnerability could allow an attacker to inject malicious scripts into web pages viewed by users, leading to potential theft of sensitive information or unauthorized actions.
Remediation
Upgrade to the latest version to mitigate this vulnerability.
WeaknessesCWE-79
AuthorsHarsh
Template tagscve2022cvexsshelmet-store-showroomhelmet_store_showroom_projectvuln
CVSS vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
CPE: cpe:2.3:a:helmet_store_showroom_project:helmet_store_showroom:1.0:*:*:*:*:*:*:*
https://yuyudhn.github.io/CVE-2022-46073/ https://nvd.nist.gov/vuln/detail/CVE-2022-46073 https://www.youtube.com/watch?v=jT09Uiwl0Jo
Source: ProjectDiscovery
References
3youtube.com
https://www.youtube.com/watch?v=jT09Uiwl0Jo&ab_channel=IkariShinji yuyudhn.github.io
https://yuyudhn.github.io/CVE-2022-46073