CVE-2022-47870

A Cross Site Scripting (XSS) vulnerability in the web SQL monitor login page in Redgate SQL Monitor 12.1.31.893 allows remote attackers to inject arbitrary web Script or HTML via the returnUrl parameter.
Configurations

Configuration 1 (hide)

cpe:2.3:a:red-gate:sql_monitor:12.1.31.893:*:*:*:*:*:*:*

History

21 Nov 2024, 07:32

Type Values Removed Values Added
References () https://packetstormsecurity.com/files/171647/SQL-Monitor-12.1.31.893-Cross-Site-Scripting.html - Exploit, Third Party Advisory, VDB Entry () https://packetstormsecurity.com/files/171647/SQL-Monitor-12.1.31.893-Cross-Site-Scripting.html - Exploit, Third Party Advisory, VDB Entry

Information

Published : 2023-04-04 13:15

Updated : 2024-11-21 07:32


NVD link : CVE-2022-47870

Mitre link : CVE-2022-47870

CVE.ORG link : CVE-2022-47870


JSON object : View

Products Affected

red-gate

  • sql_monitor
CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')