跳转到帖子

Debian: CVE-2022-4730: graphite-web -- security update

recommended_posts

发布于
  • Members

Debian: CVE-2022-4730: graphite-web -- security update

Severity
5
CVSS
(AV:N/AC:M/Au:S/C:P/I:P/A:N)
Published
12/27/2022
Created
02/08/2023
Added
02/08/2023
Modified
01/28/2025

Description

A vulnerability was found in Graphite Web. It has been classified as problematic. Affected is an unknown function of the component Absolute Time Range Handler. The manipulation leads to cross site scripting. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The name of the patch is 2f178f490e10efc03cd1d27c72f64ecab224eb23. It is recommended to apply a patch to fix this issue. The identifier of this vulnerability is VDB-216744.

Solution(s)

  • debian-upgrade-graphite-web

References

  • https://attackerkb.com/topics/cve-2022-4730
  • CVE - 2022-4730
  • DLA-3309-1
  • 查看数 695
  • 已创建
  • 最后回复

参与讨论

你可立刻发布并稍后注册。 如果你有帐户,立刻登录发布帖子。

游客
回帖…