CVE-2022-50966 | uBidAuction 2.0.1 GET news/manage filter date_created/date_from/date_to/created_at cross site scripting (Exploit 50693 / EUVD-2022-55987)
A vulnerability was found in uBidAuction 2.0.1. It has been rated as problematic. Affected is the function filter of the file news/manage of the component GET Handler. The manipulation of the argument date_created/date_from/date_to/created_at leads to cross site scripting.
This vulnerability is uniquely identified as CVE-2022-50966. The attack is possible to be carried out remotely. Moreover, an exploit is present.