← back
CVE-2022-28479

CVE-2022-28479

EPSS 0.6%
SeedDMS versions 6.0.18 and 5.1.25 and below are vulnerable to stored XSS. An attacker with admin privileges can inject the payload inside the "Role management" menu and then trigger the payload by loading the "Users management" menu
Affected products
n/a · n/a

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →