CVE-2022-26980
Dashboard / Vulnerabilities / CVE-2022-26980
Summary:
Details: Teampass 2.1.26 allows reflected XSS via the index.php PATH_INFO.
References: https://gist.github.com/RNPG/6919286e0daebce7634d0a744e060dca, https://github.com/nilsteampassnet/TeamPass/commits/teampass_2, https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/26xxx/CVE-2022-26980.json, https://nvd.nist.gov/vuln/detail/CVE-2022-26980
Affected packages
Package
Name:
Purl:
Affected ranges
Type: GIT
Events:
Introduced- 9faef0aa06ecfa335538ce40c07816d4f46865c7
Fixed -None
Affected versions
2.1.26
2.1.26-final
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
