Логотип exploitDog
bind:CVE-2023-53890
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2023-53890

Количество 2

Количество 2

nvd логотип

CVE-2023-53890

около 2 месяцев назад

Perch CMS 3.2 contains a stored cross-site scripting vulnerability that allows authenticated users to upload malicious SVG files with embedded JavaScript. Attackers can craft SVG files with script tags that execute when the file is viewed, potentially stealing user session information or performing client-side attacks.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-j5m3-4q76-pf42

около 2 месяцев назад

Perch CMS 3.2 contains a stored cross-site scripting vulnerability that allows authenticated users to upload malicious SVG files with embedded JavaScript. Attackers can craft SVG files with script tags that execute when the file is viewed, potentially stealing user session information or performing client-side attacks.

CVSS3: 5.4
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2023-53890

Perch CMS 3.2 contains a stored cross-site scripting vulnerability that allows authenticated users to upload malicious SVG files with embedded JavaScript. Attackers can craft SVG files with script tags that execute when the file is viewed, potentially stealing user session information or performing client-side attacks.

CVSS3: 5.4
0%
Низкий
около 2 месяцев назад
github логотип
GHSA-j5m3-4q76-pf42

Perch CMS 3.2 contains a stored cross-site scripting vulnerability that allows authenticated users to upload malicious SVG files with embedded JavaScript. Attackers can craft SVG files with script tags that execute when the file is viewed, potentially stealing user session information or performing client-side attacks.

CVSS3: 5.4
0%
Низкий
около 2 месяцев назад

Уязвимостей на страницу