PT-2023-23494 · Wuzhicms+1 · Wuzhi Cms+1

Published

2023-05-23

·

Updated

2025-01-17

·

CVE-2023-31860

CVSS v3.1

5.4

Medium

VectorAV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions Wuzhi CMS version 3.1.2
Description The issue is related to a storage type XSS vulnerability located in the backend of the Five Finger CMS b2b system.
Recommendations For Wuzhi CMS version 3.1.2, update to a version that fixes the storage type XSS vulnerability in the backend of the Five Finger CMS b2b system. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

XSS

Weakness Enumeration

Related Identifiers

CVE-2023-31860

Affected Products

Five Finger Cms
Wuzhi Cms