CVE-2022-30770

Severity CVSS v4.0:
Pending analysis
Type:
CWE-79 Cross-Site Scripting (XSS)
Publication date:
16/05/2022
Last modified:
27/10/2022

Description

Terminalfour versions 8.3.7, 8.3.x versions prior to version 8.3.8 and r 8.2.x versions prior to version 8.2.18.5 or 8.2.18.2.1 are vulnerable to (XSS) vulnerability that could be exploited by an attacker to mislead an administrator and steal their credentials.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:terminalfour:terminalfour:*:*:*:*:*:*:*:* 8.2.0 (including) 8.2.18.2.1 (excluding)
cpe:2.3:a:terminalfour:terminalfour:*:*:*:*:*:*:*:* 8.2.18.3 (including) 8.2.18.5 (excluding)
cpe:2.3:a:terminalfour:terminalfour:*:*:*:*:*:*:*:* 8.3.0 (including) 8.3.8 (excluding)