Survey Maker prior to 3.6.4 contains a stored cross-site scripting vulnerability. If this vulnerability is exploited, an arbitrary script may be executed on the web browser of the user who is logging in to the website using the product with the administrative privilege.
Metrics
Affected Vendors & Products
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Fri, 10 Oct 2025 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Ays-pro
Ays-pro survey Maker |
|
| CPEs | cpe:2.3:a:ays-pro:survey_maker:*:*:*:*:*:wordpress:*:* | |
| Vendors & Products |
Ays-pro
Ays-pro survey Maker |
Wed, 06 Nov 2024 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-79 | |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: jpcert
Published:
Updated: 2024-11-06T14:40:54.619Z
Reserved: 2023-08-24T08:08:44.050Z
Link: CVE-2023-34423
Updated: 2024-08-02T16:10:07.128Z
Status : Analyzed
Published: 2024-04-03T08:15:48.990
Modified: 2025-10-10T17:18:42.287
Link: CVE-2023-34423
No data.
OpenCVE Enrichment
No data.