A vulnerability classified as problematic was found in AlexanderLivanov FotosCMS2 up to 2.4.3. This vulnerability affects unknown code of the file profile.php of the component Cookie Handler. The manipulation of the argument username leads to cross site scripting. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. VDB-243802 is the identifier assigned to this vulnerability.
References
Link | Resource |
---|---|
https://github.com/AlexanderLivanov/FotosCMS2/issues/18 | Exploit Issue Tracking |
https://vuldb.com/?ctiid.243802 | Permissions Required |
https://vuldb.com/?id.243802 | Permissions Required |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: VulDB
Published: 2023-10-28T21:31:04.594Z
Updated: 2023-10-28T21:31:04.594Z
Reserved: 2023-10-28T06:39:20.313Z
Link: CVE-2023-5837
JSON object: View
NVD Information
Status : Modified
Published: 2023-10-28T22:15:08.630
Modified: 2024-05-17T02:33:21.140
Link: CVE-2023-5837
JSON object: View
Redhat Information
No data.
CWE