CVE-2022-50801
Last modified
CVE-2022-50801 is a medium-severity vulnerability rated 5.1/10 on the CVSS scale. JM-DATA ONU JF511-TV version 1.0.67 is vulnerable to authenticated stored cross-site scripting (XSS) attacks, allowing attackers with authenticated access to inject malicious scripts that will be executed in other users' browsers when they view the affected content.. EPSS estimates a 0.22% chance of exploitation in the next 30 days.
Description
JM-DATA ONU JF511-TV version 1.0.67 is vulnerable to authenticated stored cross-site scripting (XSS) attacks, allowing attackers with authenticated access to inject malicious scripts that will be executed in other users' browsers when they view the affected content.
Metrics
Weakness Enumeration
References
Timeline
- Published
- Last Modified
- Status
- Deferred
Frequently Asked Questions
What is CVE-2022-50801?
How severe is CVE-2022-50801?
How do I fix CVE-2022-50801?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2022
- CVE-2022-50795SOUND4 IMPACT/FIRST/PULSE/Eco <=2.x contains a conditional c…8.5
- CVE-2022-50796SOUND4 IMPACT/FIRST/PULSE/Eco <=2.x contains an unauthentica…9.8
- CVE-2022-50797Stripe Green Downloads Wordpress Plugin 2.03 contains a pers…6.4
- CVE-2022-50798Rejected reason: This candidate is a duplicate of CVE-2017-1…
- CVE-2022-50799Fetch FTP Client 5.8.2 contains a denial of service vulnerab…7.5
- CVE-2022-50800H3C SSL VPN contains a user enumeration vulnerability that a…7.5
- CVE-2022-50802ETAP Safety Manager 1.0.0.32 contains a cross-site scripting…6.1
- CVE-2022-50803JM-DATA ONU JF511-TV version 1.0.67 uses default credentials…9.8
- CVE-2022-50804JM-DATA ONU JF511-TV version 1.0.67 is vulnerable to cross-s…8.8
- CVE-2022-50805Senayan Library Management System 9.0.0 contains a SQL injec…8.8
- CVE-2022-508064images 1.9 contains a remote command execution vulnerabilit…8.6
- CVE-2022-50807Rejected reason: This candidate was withdrawn by its CNA. Fu…
Are you affected by CVE-2022-50801?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
