CVE-2022-32145
https://notcve.org/view.php?id=CVE-2022-32145
A vulnerability has been identified in Teamcenter Active Workspace V5.2 (All versions < V5.2.9), Teamcenter Active Workspace V6.0 (All versions < V6.0.3). A reflected cross-site scripting (XSS) vulnerability exists in the web interface of the affected application that could allow an attacker to execute malicious code by tricking users into accessing a malicious link. Se ha identificado una vulnerabilidad en Teamcenter Active Workspace versiones V5.2 (Todas las versiones anteriores a V5.2.9), Teamcenter Active Workspace versiones V6.0 (Todas las versiones anteriores a V6.0.3). se presenta una vulnerabilidad de tipo cross-site scripting (XSS) reflejado en la interfaz web de la aplicación afectada que podría permitir a un atacante ejecutar código malicioso engañando a los usuarios para que accedan a un enlace malicioso • https://cert-portal.siemens.com/productcert/pdf/ssa-401167.pdf • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •