Record summary

CVE-2022-46073 has a selected CVSS score of 6.1 (medium); EIP currently links 1 Nuclei template.

Description

Helmet Store Showroom 1.0 is vulnerable to Cross Site Scripting (XSS).

Description source: CVE List

Exploitation context

Available material

Nuclei templates
1

CISA SSVC decision

ExploitationPoC
AutomatableNo
Technical impactPartial

CISA Coordinator · SSVC 2.0.3 · Evaluated Apr 22, 2025 · Source: CVE List

Nuclei templates

1
ProjectDiscoveryMEDIUMHelmet Store Showroom - Cross Site ScriptingCVSS 6.1

Helmet Store Showroom 1.0 is vulnerable to Cross Site Scripting (XSS).

Impact

Successful exploitation of this vulnerability could allow an attacker to inject malicious scripts into web pages viewed by users, leading to potential theft of sensitive information or unauthorized actions.

Remediation

Upgrade to the latest version to mitigate this vulnerability.

WeaknessesCWE-79
AuthorsHarsh
Template tagscve2022cvexsshelmet-store-showroomhelmet_store_showroom_projectvuln
CVSS vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
CPE: cpe:2.3:a:helmet_store_showroom_project:helmet_store_showroom:1.0:*:*:*:*:*:*:*

Source: ProjectDiscovery

References

3