Cross Site Scripting Vulnerability in DiscuzX 3.4 by Discuz
CVE-2022-45543
6.1MEDIUM
What is CVE-2022-45543?
The Cross Site Scripting vulnerability in DiscuzX 3.4 allows attackers to craft malicious input through parameters such as datetline, title, tpp, or username during the audit search process. This flaw can lead to the execution of arbitrary code in the context of affected users' browsers, potentially compromising sensitive information and leading to unauthorized actions by the attacker. Organizations using DiscuzX 3.4 are advised to review their implementations and apply necessary security measures to mitigate this risk.
