A stored cross-site scripting (XSS) vulnerability in Infoblox NIOS v8.5.2-409296 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the VLAN View Name field.
Metrics
Affected Vendors & Products
References
| Link | Providers |
|---|---|
| http://infoblox.com |
|
| https://piotrryciak.com/posts/xss-infoblox/ |
|
History
Tue, 27 Jan 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:o:infoblox:nios:8.5.2:*:*:*:*:*:*:* |
Wed, 18 Jun 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: mitre
Published: 2024-01-09T00:00:00.000Z
Updated: 2025-06-18T16:55:58.687Z
Reserved: 2022-04-11T00:00:00.000Z
Link: CVE-2022-28975
Updated: 2024-08-03T06:10:58.538Z
Status : Analyzed
Published: 2024-01-09T14:15:45.647
Modified: 2026-01-27T15:03:11.357
Link: CVE-2022-28975
No data.