CVE-2022-47412
Given a malicious document provided by an attacker, the ONLYOFFICE Workspace DMS is vulnerable to a stored (persistent,
Given a malicious document provided by an attacker, the ONLYOFFICE Workspace DMS is vulnerable to a stored (persistent, or "Type II") cross-site scripting (XSS) condition.
MEDIUM · CVSS 5.4
EPSS 0.00255
Schedule remediation
- Public exploit or PoC is available
Sigma rules8
YARA rules0