PT-2023-25579 · Unknown · Meldekarten Generator

Quirinziessler

·

Published

2023-06-27

·

Updated

2023-07-06

·

CVE-2023-36463

CVSS v3.1

5.3

Medium

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L
Name of the Vulnerable Software and Affected Versions Meldekarten generator versions prior to 1.0.0b1.1.2
Description The issue concerns the lack of proper sanitization of user input in text fields, making them susceptible to XSS attacks. This has been addressed in a commit, and there are no known workarounds for this issue.
Recommendations For versions prior to 1.0.0b1.1.2, upgrade to version 1.0.0b1.1.2 to resolve the issue.

Exploit

Fix

XSS

Weakness Enumeration

Related Identifiers

CVE-2023-36463
GHSA-F2GP-85CR-VGJ7

Affected Products

Meldekarten Generator