Unrated severityNVD Advisory· Published Apr 14, 2022· Updated Apr 15, 2025
CVE-2022-21145
CVE-2022-21145
Description
A stored cross-site scripting vulnerability exists in the WebUserActions.aspx functionality of Lansweeper lansweeper 9.1.20.2. A specially-crafted HTTP request can lead to arbitrary Javascript code injection. An attacker can send an HTTP request to trigger this vulnerability.
Affected products
1- Range: 9.1.20.2
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- talosintelligence.com/vulnerability_reports/TALOS-2022-1442mitrex_refsource_MISC
- www.lansweeper.com/changelog/mitrex_refsource_CONFIRM
News mentions
0No linked articles in our index yet.