Survey Maker prior to 3.6.4 contains a stored cross-site scripting vulnerability. If this vulnerability is exploited, an arbitrary script may be executed on the web browser of the user who is logging in to the website using the product with the administrative privilege.
Metrics
Affected Vendors & Products
References
History
Wed, 06 Nov 2024 15:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-79 | |
Metrics |
cvssV3_1
|
MITRE
Status: PUBLISHED
Assigner: jpcert
Published: 2024-04-03T07:09:42.923Z
Updated: 2024-11-06T14:40:54.619Z
Reserved: 2023-08-24T08:08:44.050Z
Link: CVE-2023-34423
Vulnrichment
Updated: 2024-08-02T16:10:07.128Z
NVD
Status : Awaiting Analysis
Published: 2024-04-03T08:15:48.990
Modified: 2024-11-06T15:35:04.380
Link: CVE-2023-34423
Redhat
No data.