{"id":"CVE-2022-4892","summary":"MyCMS Visitors Module view.php build_view cross site scripting","details":"A vulnerability was found in MyCMS. It has been classified as problematic. This affects the function build_view of the file lib/gener/view.php of the component Visitors Module. The manipulation of the argument original/converted leads to cross site scripting. It is possible to initiate the attack remotely. The patch is named d64fcba4882a50e21cdbec3eb4a080cb694d26ee. It is recommended to apply a patch to fix this issue. The associated identifier of this vulnerability is VDB-218895.","modified":"2026-08-12T03:51:08.828661275Z","published":"2023-01-19T07:58:08.343Z","database_specific":{"cna_assigner":"VulDB","cwe_ids":["CWE-79"],"osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/4xxx/CVE-2022-4892.json"},"references":[{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/4xxx/CVE-2022-4892.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2022-4892"},{"type":"ADVISORY","url":"https://vuldb.com/?id.218895"},{"type":"REPORT","url":"https://vuldb.com/?ctiid.218895"},{"type":"FIX","url":"https://github.com/andrzuk/MyCMS/commit/d64fcba4882a50e21cdbec3eb4a080cb694d26ee"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/andrzuk/mycms","events":[{"introduced":"0"},{"fixed":"d64fcba4882a50e21cdbec3eb4a080cb694d26ee"}],"database_specific":{"source":"REFERENCES"}}],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-4892.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N"}]}