CVE-2022-25620

Severity CVSS v4.0:
Pending analysis
Type:
CWE-79 Cross-Site Scripting (XSS)
Publication date:
30/03/2022
Last modified:
07/04/2022

Description

Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in Group Functionality of Profelis IT Consultancy SambaBox allows AUTHENTICATED user to cause execute arbitrary codes on the vulnerable server. This issue affects: Profelis IT Consultancy SambaBox 4.0 version 4.0 and prior versions on x86.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:profelis:sambabox:*:*:*:*:*:*:x86:* 4.0 (including)


References to Advisories, Solutions, and Tools