PT-2022-24237 · Silverstripe · Silverstripe/Framework
Tf1T
·
Published
2022-11-22
·
Updated
2022-11-30
·
CVE-2022-38145
CVSS v3.1
5.4
Medium
| Vector | AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N |
Name of the Vulnerable Software and Affected Versions
Silverstripe silverstripe/framework versions through 4.11
Description
The issue allows remote attackers to execute a Javascript payload in the versioned history compare view by adding it to a page's meta description. This can be done by a malicious content author who has access to the CMS. The attacker must then convince a privileged user to access the version history for that page.
Recommendations
For versions through 4.11, consider restricting access to the versioned history compare view until a patch is available. As a temporary workaround, limit the ability for content authors to add Javascript payloads to page meta descriptions. Ensure that only trusted users have access to the CMS to minimize the risk of exploitation.
Exploit
Fix
XSS
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Silverstripe/Framework