Description
Cross Site Scripting vulnerabiltiy in Badaso v.0.0.1 thru v.2.9.7 allows a remote attacker to execute arbitrary code via a crafted payload to the Name of member parameter in the add new member function.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-2230 | Cross Site Scripting vulnerabiltiy in Badaso v.0.0.1 thru v.2.9.7 allows a remote attacker to execute arbitrary code via a crafted payload to the Name of member parameter in the add new member function. |
Github GHSA |
GHSA-7422-7rq6-j4qv | Badaso vulnerable to cross-site scripting |
References
History
Tue, 01 Oct 2024 21:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-10-01T20:25:24.208Z
Reserved: 2023-07-25T00:00:00.000Z
Link: CVE-2023-38970
Updated: 2024-08-02T17:54:39.736Z
Status : Modified
Published: 2023-08-30T22:15:08.717
Modified: 2024-11-21T08:14:33.030
Link: CVE-2023-38970
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA