Cross Site Scripting (XSS) vulnerability in WBCE CMS v.1.6.1 and before allows a remote attacker to escalate privileges via a crafted script to the website_footer parameter in the admin/settings/save.php component.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://github.com/aaanz/aaanz.github.io/blob/master/XSS.md |
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2023-10-21T00:00:00
Updated: 2024-09-16T13:13:29.739Z
Reserved: 2023-10-16T00:00:00
Link: CVE-2023-46054
Vulnrichment
Updated: 2024-08-02T20:37:39.678Z
NVD
Status : Modified
Published: 2023-10-21T07:15:07.690
Modified: 2024-11-21T08:27:49.260
Link: CVE-2023-46054
Redhat
No data.