CVE-2022-4966
CVSS 2.0 Score 4.0 of 10 (medium)
Details
Summary
CVE-2022-4966 is a newly identified vulnerability that affects Sequentech admin-console versions up to 6.1.7. This issue is classified as problematic and involves an unspecified functionality of the Election Description Handler component. The manipulation of this component leads to Cross-Site Scripting (XSS), allowing attackers to inject malicious code into a victim's web browser and launch remote attacks. To mitigate this risk, upgrading to version 7.0.0-beta.1 is recommended. The patch for this vulnerability is identified as 0043a6b1e6e0f5abc9557e73f9ffc524fc5d609d, and VDB-258782 is the identifier assigned to it. Organizations using Sequentech admin-console are advised to upgrade their affected components promptly to protect against potential XSS attacks.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Advisories, Assessments, and Mitigations
Prioritize, Pinpoint, and Act to Prevent Vulnerability Exploits with Recorded Future
- Gain complete coverage of your cyber, third party, and physical attack surface
- Proactively mitigate threats before they turn into costly attacks
- Make fast, effective, data-driven decisions