Vulnerability Details CVE-2022-47187
There is a file upload XSS vulnerability in Generex CS141 below 2.06 version. The web application allows file uploading, making it possible to upload a file with HTML content. When HTML files are allowed, XSS payload can be injected into the uploaded file.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 27.8%
CVSS Severity
CVSS v3 Score 5.3
Products affected by CVE-2022-47187
-
cpe:2.3:h:generex:cs141:-
-
cpe:2.3:o:generex:cs141_firmware:-
-
cpe:2.3:o:generex:cs141_firmware:1.90
-
cpe:2.3:o:generex:cs141_firmware:2.00
-
cpe:2.3:o:generex:cs141_firmware:2.02
-
cpe:2.3:o:generex:cs141_firmware:2.04