Cross-Site Scripting (XSS) vulnerability in Sunlight CMS 8.0.1 allows an authenticated low-privileged user to escalate privileges via a crafted SVG file in the File Manager component.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://mechaneus.github.io/CVE-2023-48202.html |
|
History
Thu, 29 May 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-05-29T15:11:39.808Z
Reserved: 2023-11-13T00:00:00.000Z
Link: CVE-2023-48202
Updated: 2024-08-02T21:23:39.237Z
Status : Modified
Published: 2024-01-27T06:15:47.967
Modified: 2025-05-29T16:15:30.247
Link: CVE-2023-48202
No data.
OpenCVE Enrichment
No data.
Weaknesses