Back to Database
Status published
Medium
CVE-2022-24631
An issue was discovered in AudioCodes Device Manager Express through...
Vulnerability Description
An issue was discovered in AudioCodes Device Manager Express through 7.8.20002.47752. It is stored XSS via the ajaxTenants.php desc parameter.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2022-24631
Credits & Attribution
No credits recorded in the NVD database.
More from audiocodes
View All →CVE-2022-24632
An issue was discovered in AudioCodes Device Manager Express through...
Medium
5.3
CVE-2022-24630
An issue was discovered in AudioCodes Device Manager Express through...
High
7.2
CVE-2022-24629
An issue was discovered in AudioCodes Device Manager Express through...
Unknown
0
CVE-2022-24628
An issue was discovered in AudioCodes Device Manager Express through...
Unknown
0
CVE-2022-24627
An issue was discovered in AudioCodes Device Manager Express through...
Unknown
0
Affected Vendor
audiocodes
View all reports →Affected Software
device manager express
Vulnerable Versions:
0
Timeline
Official Publish:
May 29th, 2023
Last Modified:
January 14th, 2025
Added to House:
July 21st, 2026
CVSS Vectors
V3:
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.