Description
A Cross-site scripting (XSS) vulnerability in the content editor in Gis3W g3w-suite 3.5 allows remote authenticated users to inject arbitrary web script or HTML and gain privileges via the description parameter.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-33528 | A Cross-site scripting (XSS) vulnerability in the content editor in Gis3W g3w-suite 3.5 allows remote authenticated users to inject arbitrary web script or HTML and gain privileges via the description parameter. |
References
History
Thu, 14 Nov 2024 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-11-14T19:45:14.993Z
Reserved: 2023-04-07T00:00:00.000Z
Link: CVE-2023-29998
Updated: 2024-08-02T14:21:44.520Z
Status : Modified
Published: 2023-07-07T16:15:09.737
Modified: 2024-11-21T07:57:44.300
Link: CVE-2023-29998
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD