Unrated severityNVD Advisory· Published Oct 24, 2022· Updated May 7, 2025
CVE-2022-36368
CVE-2022-36368
Description
Multiple stored cross-site scripting vulnerabilities in the web user interface of IPFire versions prior to 2.27 allows a remote authenticated attacker with administrative privilege to inject an arbitrary script.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- IPFire Project/IPFirev5Range: versions prior to 2.27
Patches
Vulnerability mechanics
References
3News mentions
0No linked articles in our index yet.