A stored cross-site scripting (XSS) vulnerability in /home/user/edit_submit of gougucms v4.08.18 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into the headimgurl parameter.
Advisories
Source ID Title
EUVD EUVD EUVD-2023-50614 A stored cross-site scripting (XSS) vulnerability in /home/user/edit_submit of gougucms v4.08.18 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into the headimgurl parameter.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-09-12T20:24:43.244Z

Reserved: 2023-10-23T00:00:00

Link: CVE-2023-46394

cve-icon Vulnrichment

Updated: 2024-08-02T20:45:41.693Z

cve-icon NVD

Status : Modified

Published: 2023-10-27T14:15:08.627

Modified: 2024-11-21T08:28:26.387

Link: CVE-2023-46394

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses