Security Advisory

CVE-2022-21146

6.3
MEDIUM

Vulnerability Description

Persistent cross-site scripting in the web interface of ipDIO allows an unauthenticated remote attacker to introduce arbitrary JavaScript by injecting an XSS payload into a specific parameter. The XSS payload will be executed when a legitimate user attempts to review history.
Published Date March 10, 2022
Official Source NIST NVD Advisory