CVE-2022-24703

There was a stored XSS vulnerability in the Schedule name field of Schedule page.

 

Vulnerability Details
SeverityMedium
Reported22 January 2022
Reported byHazem Osama
Fixed1 February 2022
Affected BuildsBuilds below 125583
Fixed inBuild 125584
OverviewThere was a stored XSS vulnerability in the Schedule name field of the Schedule page
Recommended FixFor builds below 125583, please contact NCM support

 

Description

Earlier, there was a stored XSS vulnerability in the Schedule name field of Schedule page. This issue is fixed now.

We recommend you to contact NCM support for recommended fix.

Source and Acknowledgements

Find out more about CVE-2022-24703 from the CVE dictionary.

Need Help?

For clarification or corrections please contact our support team or email us at ncm-support@manageengine.com.