← Back to CVE List
CVE-2022-2511
Cross-site Scripting (XSS) vulnerability in the "commonuserinterface" component of BlueSpice allows an attacker to inject arbitrary HTML into a page using the title parameter of the call URL.
> MITRE Terms of Use apply – see LICENSE‑MITRE.txt