Aller au contenu

Fiche vulnérabilité

CVE-2026-22231 : faille moyenne opexustech ecase audit (CVSS 5.4)

Description

OPEXUS eCASE Audit allows an authenticated attacker to save JavaScript as a comment within the Document Check Out functionality. The JavaScript is executed whenever another user views the Action History Log. Fixed in OPEXUS eCASE Platform 11.14.1.0.

En bref

Sévérité
Moyenne (CVSS 5.4)
Vecteur CVSS
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Exploitation active
Non signalée par la CISA
Publication
8 janv. 2026
Dernière mise à jour
17 juin 2026

Produits concernés

  • opexustech ecase audit

Références

Rechercher une autre vulnérabilité dans la base CVE