VYPR
Medium severity6.1NVD Advisory· Published Oct 25, 2022· Updated Jun 17, 2026

CVE-2022-38162

CVE-2022-38162

Description

Reflected cross-site scripting (XSS) vulnerabilities in WithSecure through 2022-08-10) exists within the F-Secure Policy Manager due to an unvalidated parameter in the endpoint, which allows remote attackers to provide a malicious input.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

4
  • cpe:2.3:a:withsecure:f-secure_policy_manager:-:*:*:*:*:linux_kernel:*:*+ 2 more
    • cpe:2.3:a:withsecure:f-secure_policy_manager:-:*:*:*:*:linux_kernel:*:*
    • cpe:2.3:a:withsecure:f-secure_policy_manager:-:*:*:*:*:windows:*:*
    • (no CPE)range: <=2022-08-10
  • WithSecure/Policy Managerdescription

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.