CVE-2022-43185
EUVD-2022-4622919.10.2022, 14:15
A stored cross-site scripting (XSS) vulnerability in the Configuration/Holidays module of Rukovoditel v3.2.1 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Name parameter.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| rukovoditel | rukovoditel | 3.2.1 |
𝑥
= Vulnerable software versions