CVE-2022-22985 is a high-severity cross-site scripting (XSS) vulnerability affecting ipcomm ipdio and ipcomm ipdio_firmware, where a lack of input filtering allows attackers to inject malicious code into web application sections. This code executes when a legitimate user views specific historical data, potentially leading to high impact on confidentiality, integrity, and availability. While the vulnerability has a high CVSS score of 8.8, there is currently no public exploit code, Metasploit modules, or significant community discussion or media coverage, indicating it is not actively exploited in the wild.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
3.9CPE matchmatch criteria | cpe:2.3:o:ipcomm:ipdio_firmware:3.9:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.2 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.1 Security Researcher mentions.
Remediation records are not available for this CVE.