Vulnerability Details CVE-2022-24238
ACEweb Online Portal 3.5.065 was discovered to contain a cross-site scripting (XSS) vulnerability via the txtNmName1 parameter in person.awp.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.005
EPSS Ranking 41.9%
CVSS Severity
CVSS v3 Score 6.1
CVSS v2 Score 4.3
Products affected by CVE-2022-24238
-
cpe:2.3:a:aceware:aceweb_online_portal:-
-
cpe:2.3:a:aceware:aceweb_online_portal:3.5.065