Description
vulnerability in Uniform Server Zero, version 10.2.5, consisting of an XSS through the /us_extra/phpinfo.php page. This vulnerability could allow a remote user to send a specially crafted query to an authenticated user and partially take over their session details.
No analysis available yet.
Remediation
Vendor Solution
Vulnerability fixed in the latest version.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-57395 | vulnerability in Uniform Server Zero, version 10.2.5, consisting of an XSS through the /us_extra/phpinfo.php page. This vulnerability could allow a remote user to send a specially crafted query to an authenticated user and partially take over their session details. |
References
History
No history.
Subscriptions
No data.
Status: PUBLISHED
Assigner: INCIBE
Published:
Updated: 2024-08-02T07:44:53.610Z
Reserved: 2023-09-18T14:23:37.221Z
Link: CVE-2023-5052
Updated: 2024-08-02T07:44:53.610Z
Status : Deferred
Published: 2024-05-14T14:23:51.963
Modified: 2026-04-15T00:35:42.020
Link: CVE-2023-5052
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD