A vulnerability has been found in Pluck CMS 4.7.18 and classified as problematic. This vulnerability affects unknown code of the file install.php of the component Installation Handler. The manipulation of the argument contents with the input <script>alert('xss')</script> leads to cross site scripting. The attack can be initiated remotely. The complexity of an attack is rather high. The exploitation appears to be difficult. The exploit has been disclosed to the public and may be used. VDB-239854 is the identifier assigned to this vulnerability.
References
Link | Resource |
---|---|
https://github.com/Jacky-Y/vuls/blob/main/vul3.md | Exploit Third Party Advisory |
https://vuldb.com/?ctiid.239854 | Permissions Required Third Party Advisory |
https://vuldb.com/?id.239854 | Permissions Required Third Party Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: VulDB
Published: 2023-09-16T23:00:07.544Z
Updated: 2024-07-09T13:45:55.662Z
Reserved: 2023-09-16T06:34:06.273Z
Link: CVE-2023-5013
JSON object: View
NVD Information
Status : Modified
Published: 2023-09-16T23:15:07.283
Modified: 2024-05-17T02:32:45.913
Link: CVE-2023-5013
JSON object: View
Redhat Information
No data.
CWE