Логотип exploitDog
bind:CVE-2023-53916
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2023-53916

Количество 2

Количество 2

nvd логотип

CVE-2023-53916

около 2 месяцев назад

Zenphoto 1.6 contains a stored cross-site scripting vulnerability in the user postal code field accessible through the admin-users.php interface. When administrators view user information imported as HTML, malicious JavaScript payloads injected into the postal code field execute in their browser context.

CVSS3: 4.6
EPSS: Низкий
github логотип

GHSA-ghf5-82w9-mc3r

около 2 месяцев назад

Zenphoto 1.6 contains a stored cross-site scripting vulnerability in the user postal code field accessible through the admin-users.php interface. When administrators view user information imported as HTML, malicious JavaScript payloads injected into the postal code field execute in their browser context.

CVSS3: 5.4
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2023-53916

Zenphoto 1.6 contains a stored cross-site scripting vulnerability in the user postal code field accessible through the admin-users.php interface. When administrators view user information imported as HTML, malicious JavaScript payloads injected into the postal code field execute in their browser context.

CVSS3: 4.6
0%
Низкий
около 2 месяцев назад
github логотип
GHSA-ghf5-82w9-mc3r

Zenphoto 1.6 contains a stored cross-site scripting vulnerability in the user postal code field accessible through the admin-users.php interface. When administrators view user information imported as HTML, malicious JavaScript payloads injected into the postal code field execute in their browser context.

CVSS3: 5.4
0%
Низкий
около 2 месяцев назад

Уязвимостей на страницу