Cross-site scripting vulnerability in Movable Type series allows a remote authenticated attacker to inject an arbitrary script. Affected products/versions are as follows: Movable Type 7 r.5405 and earlier (Movable Type 7 Series), Movable Type Advanced 7 r.5405 and earlier (Movable Type 7 Series), Movable Type Premium 1.58 and earlier, Movable Type Premium Advanced 1.58 and earlier, Movable Type Cloud Edition (Version 7) r.5405 and earlier, and Movable Type Premium Cloud Edition 1.58 and earlier.
References
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: jpcert

Published: 2023-10-30T04:57:43.561Z

Updated: 2023-10-30T04:57:43.561Z

Reserved: 2023-10-12T05:42:52.133Z


Link: CVE-2023-45746

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2023-10-30T05:15:09.993

Modified: 2023-11-08T12:49:08.920


Link: CVE-2023-45746

JSON object: View

cve-icon Redhat Information

No data.

CWE