Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-29894 | Within the Service Desk module of the ITarian platform (SAAS and on-premise), a remote attacker can obtain sensitive information, caused by the failure to set the HTTP Only flag. A remote attacker could exploit this vulnerability to gain access to the management interface by using this vulnerability in combination with a successful Cross-Site Scripting attack on a user. |
Thu, 19 Sep 2024 03:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: DIVD
Published:
Updated: 2025-03-11T13:40:40.103Z
Reserved: 2022-02-14T00:00:00.000Z
Link: CVE-2022-25151
Updated: 2024-08-03T04:29:01.856Z
Status : Modified
Published: 2022-06-09T17:15:08.787
Modified: 2024-11-21T06:51:42.090
Link: CVE-2022-25151
No data.
OpenCVE Enrichment
No data.
EUVD