Medium severity6.1NVD Advisory· Published Oct 25, 2022· Updated Jun 17, 2026
CVE-2022-38162
CVE-2022-38162
Description
Reflected cross-site scripting (XSS) vulnerabilities in WithSecure through 2022-08-10) exists within the F-Secure Policy Manager due to an unvalidated parameter in the endpoint, which allows remote attackers to provide a malicious input.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4cpe:2.3:a:withsecure:f-secure_policy_manager:-:*:*:*:*:linux_kernel:*:*+ 2 more
- cpe:2.3:a:withsecure:f-secure_policy_manager:-:*:*:*:*:linux_kernel:*:*
- cpe:2.3:a:withsecure:f-secure_policy_manager:-:*:*:*:*:windows:*:*
- (no CPE)range: <=2022-08-10
- WithSecure/Policy Managerdescription
Patches
Vulnerability mechanics
References
3- withsecure.comnvdVendor Advisory
- www.withsecure.com/en/support/security-advisoriesnvdVendor Advisory
- www.withsecure.com/en/support/security-advisories/cve-2022-38162nvd
News mentions
0No linked articles in our index yet.