Wuzhi CMS v3.1.2 has a storage type XSS vulnerability in the backend of the Five Finger CMS b2b system.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

References
History

Mon, 05 May 2025 18:30:00 +0000

Type Values Removed Values Added
First Time appeared Wuzhicms wuzhicms
CPEs cpe:2.3:a:wuzhicms:wuzhi_cms:3.1.2:*:*:*:*:*:*:* cpe:2.3:a:wuzhicms:wuzhicms:3.1.2:*:*:*:*:*:*:*
Vendors & Products Wuzhicms wuzhi Cms
Wuzhicms wuzhicms

Fri, 17 Jan 2025 17:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'poc', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2025-01-17T16:45:33.887Z

Reserved: 2023-04-29T00:00:00

Link: CVE-2023-31860

cve-icon Vulnrichment

Updated: 2024-08-02T14:56:35.661Z

cve-icon NVD

Status : Modified

Published: 2023-05-23T20:15:10.040

Modified: 2025-05-05T18:10:51.717

Link: CVE-2023-31860

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.