Cross-Site Scripting (XSS) vulnerability in Sunlight CMS 8.0.1 allows an authenticated low-privileged user to escalate privileges via a crafted SVG file in the File Manager component.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2024-01-27T00:00:00

Updated: 2024-08-02T21:23:39.237Z

Reserved: 2023-11-13T00:00:00

Link: CVE-2023-48202

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2024-01-27T06:15:47.967

Modified: 2024-02-01T04:49:50.897

Link: CVE-2023-48202

cve-icon Redhat

No data.