Sploitus

CVE-2022-35499

3 known exploits for CVE-2022-35499

In Trimble TM4WEB 21.4.0.4, the external bill viewer endpoint is vulnerable to reflected cross-site scripting via injection in a arbitrary parameter appended to the URL.

CVSS 3.1
7.1 HIGH
Weakness
CWE-79
NVD status
Received
Published
2026-09-04
CVE-2022-35499 at NVD
Authoritative description, scoring and affected products

3 known exploits for CVE-2022-35499

Proof-of-concept code and exploit modules indexed by Sploitus