The vulnerability allows a remote attacker to inject and execute arbitrary client-side script code inside a victim’s session via a crafted URL or HTTP request.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: bosch
Published: 2024-01-10T13:02:51.682Z
Updated: 2024-08-02T21:23:39.238Z
Reserved: 2023-11-13T13:44:23.705Z
Link: CVE-2023-48254
Vulnrichment
No data.
NVD
Status : Modified
Published: 2024-01-10T13:15:45.993
Modified: 2024-11-21T08:31:19.820
Link: CVE-2023-48254
Redhat
No data.