← Back to CVE List

CVE-2022-3958

Published: 2022-11-15T15:15Z
Last Modified: 2024-11-21T07:20Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
Cross-site Scripting (XSS) vulnerability in BlueSpiceUserSidebar extension of BlueSpice allows user with regular account and edit permissions to inject arbitrary HTML into the personal menu navigation of their own and other users. This allows for targeted attacks. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt