CVE-2022-47412
时间: 2023-08-27 22:06:48 浏览: 190
CVE-2022-47412是一个与ONLYOFFICE工作区代码相关的漏洞,最初由研究人员发现,并在v7.3.3中得到修复。该漏洞可以通过ONLYOFFICE文档执行。它被归类为CWE-79的一个实例,即在网页生成期间的不正确输出中存在跨站脚本(Cross-site Scripting)漏洞。这个漏洞最早是由Rapid7的研究员Matthew Kienow在2023年2月发现的。\[1\]\[2\]
#### 引用[.reference_title]
- *1* *2* [【重大消息】ONLYOFFICE 文档 v7.3.3 已成功修复 bug](https://blog.csdn.net/m0_68274698/article/details/129530139)[target="_blank" data-report-click={"spm":"1018.2226.3001.9630","extra":{"utm_source":"vip_chatgpt_common_search_pc_result","utm_medium":"distribute.pc_search_result.none-task-cask-2~all~insert_cask~default-1-null.142^v91^insert_down1,239^v3^insert_chatgpt"}} ] [.reference_item]
- *3* [WuThreat身份安全云-TVD每日漏洞情报-2023-02-09](https://blog.csdn.net/weixin_44242297/article/details/128947991)[target="_blank" data-report-click={"spm":"1018.2226.3001.9630","extra":{"utm_source":"vip_chatgpt_common_search_pc_result","utm_medium":"distribute.pc_search_result.none-task-cask-2~all~insert_cask~default-1-null.142^v91^insert_down1,239^v3^insert_chatgpt"}} ] [.reference_item]
[ .reference_list ]
阅读全文