VYPR
Medium severity4.3NVD Advisory· Published Oct 12, 2022· Updated Jun 17, 2026

CVE-2022-3464

CVE-2022-3464

Description

A vulnerability classified as problematic has been found in puppyCMS up to 5.1. This affects an unknown part of the file /admin/settings.php. The manipulation of the argument site_name leads to cross site scripting. It is possible to initiate the attack remotely. The associated identifier of this vulnerability is VDB-210699.

Affected products

3
  • PuppyCMS/puppyCMS2 versions
    cpe:2.3:a:puppycms:puppycms:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:puppycms:puppycms:*:*:*:*:*:*:*:*range: <=5.1
    • (no CPE)range: <=5.1
  • unspecified/puppyCMSv5
    Range: 5.0

Patches

Vulnerability mechanics

References

1
  • vuldb.comnvdPermissions RequiredThird Party AdvisoryVDB Entry

News mentions

0

No linked articles in our index yet.