Vulnerability Details CVE-2022-34560
A cross-site scripting (XSS) vulnerability in PHPFox v4.8.9 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the History parameter.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 28.7%
CVSS Severity
CVSS v3 Score 7.1
Products affected by CVE-2022-34560
-
cpe:2.3:a:phpfox:phpfox:4.8.9