PT-2023-16447 · Phpipam+1 · Phpipam+1

Publicado

2016-12-29

·

Atualizado

2023-05-20

·

CVE-2023-0677

CVSS v3.1

4.4

Média

VetorAV:L/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:N
Name of the Vulnerable Software and Affected Versions phpipam/phpipam versions prior to 1.5.1
Description The issue is related to Cross-site Scripting (XSS) - Reflected. This means an attacker can inject malicious scripts into a website, which are then executed by the user's browser. No information is provided about the estimated number of potentially affected devices worldwide or real-world incidents where this issue was exploited.
Recommendations For versions prior to 1.5.1, update to version 1.5.1 or later to resolve the issue. As a temporary workaround, consider restricting access to sensitive areas of the application to minimize the risk of exploitation.

Exploit

Correção

XSS

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

ALT-PU-2016-2512
ALT-PU-2023-1810
ALT-PU-2023-1837
CVE-2023-0677

Produtos afetados

Alt Linux
Phpipam