CVE-2022-2510 Information

Description

Cross-site Scripting (XSS) vulnerability in \Extension:ExtendedSearch\ of Hallo Welt! GmbH BlueSpice allows attacker to inject arbitrary HTML (XSS) on page \Special:SearchCenter\ using the search term in the URL.

Reference

https://en.wiki.bluespice.com/wiki/Security:Security_Advisories/BSSA-2022-01

Share on: