CVE-2022-38357
CVE-2022-38357
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS —EPSS 0.9%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
15 Aug 2022Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
Improper neutralization of special elements leaves the Eyes of Network Web application vulnerable to an iFrame injection attack, via the url parameter of /module/module_frame/index.php.
Affected products
n/a · Eyes of Network WebWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →