CVE-2022-38357
HIGH 8.8EPSS 1.0%
Improper neutralization of special elements leaves the Eyes of Network Web application vulnerable to an iFrame injection attack, via the url parameter of /module/module_frame/index.php.
- CVSS v3.1
- 8.8 HIGH
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H - EPSS
- 1.03% chance of exploitation in the next 30 days, 61th percentile
- Published
- 2022-08-15
- Updated
- 2024-08-03