← Volver al buscador de CVEs

CVE-2022-23961

Thruk Monitoring

Descripción

In Thruk Monitoring through 2.46.3, the login field of the login form is vulnerable to reflected XSS. This vulnerability can be exploited by unauthenticated remote attackers to target users of the monitoring interface.

CVSS 6.1EPSS 0.201%Riesgo 0.62
Ver fuente
Publicación
2026-05-08 05:16:08
Versiones afectadas
<=2.46.3
Tipo
Aplicación web
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N