Multiple WSO2 products have been identified as vulnerable due to improper output encoding, a Stored Cross Site Scripting (XSS) attack can be carried out by an attacker injecting a malicious payload into the Registry feature of the Management Console.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: WSO2

Published: 2023-12-18T08:32:58.961Z

Updated: 2023-12-18T08:32:58.961Z

Reserved: 2023-12-18T08:23:45.214Z


Link: CVE-2023-6911

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2023-12-18T09:15:05.810

Modified: 2023-12-22T17:31:09.707


Link: CVE-2023-6911

JSON object: View

cve-icon Redhat Information

No data.

CWE