PT-2023-10327 · Unknown · Coebot-Www
Oxguy3
·
Published
2023-01-04
·
Updated
2024-05-17
·
CVE-2016-15008
CVSS v3.1
6.1
Medium
| Vector | AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N |
Name of the Vulnerable Software and Affected Versions
coebot-www (affected versions not specified)
Description
A problematic issue was found, affecting the function displayChannelCommands/displayChannelQuotes/displayChannelAutoreplies/showChannelHighlights/showChannelBoir of the file js/channel.js. This issue leads to cross-site scripting and can be initiated remotely.
Recommendations
Apply the patch c1a6c44092585da4236237e0e7da94ee2996a0ca to fix this issue. As a temporary workaround, consider disabling the affected functions in the js/channel.js file until the patch is applied. Restrict access to the js/channel.js file to minimize the risk of exploitation.
Fix
XSS
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Coebot-Www