Static Code Injection in microweber/microweber
CVE-2022-0895

7.7HIGH

Key Information:

Vendor
Microweber
Vendor
CVE Published:
10 March 2022

Summary

Static Code Injection in GitHub repository microweber/microweber prior to 1.3.

Affected Version(s)

microweber/microweber < 1.3

References

CVSS V3.1

Score:
7.7
Severity:
HIGH
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
Low
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.