HTML and SMTP injections on the registration page of LiquidFiles versions 3.7.13 and below, allow an attacker to perform more advanced phishing attacks against an organization.
Metrics
Affected Vendors & Products
References
History
Wed, 25 Sep 2024 12:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-20 | |
Metrics |
ssvc
|
Wed, 25 Sep 2024 12:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-116 CWE-147 |
MITRE
Status: PUBLISHED
Assigner: TML
Published: 2023-10-29T23:13:02.588Z
Updated: 2024-09-25T11:55:18.386Z
Reserved: 2023-08-17T01:02:50.748Z
Link: CVE-2023-4393
Vulnrichment
Updated: 2024-08-02T07:24:04.605Z
NVD
Status : Modified
Published: 2023-10-30T00:15:39.237
Modified: 2024-11-21T08:35:03.273
Link: CVE-2023-4393
Redhat
No data.