CVE-2022-24582
24.02.2022, 15:15
Accounting Journal Management 1.0 is vulnerable to XSS-PHPSESSID-Hijacking. The parameter manage_user from User lists is vulnerable to XSS-Stored and PHPSESSID attacks. The malicious user can attack the system by using the already session which he has from inside and outside of the network.
Vendor | Product | Version |
---|---|---|
accounting_journal_management_project | accounting_journal_management | 1.0 |
𝑥
= Vulnerable software versions