PT-2023-26990 · Unknown · Social Media Skeleton

M0Ck3D

·

Published

2023-08-08

·

Updated

2023-08-10

·

CVE-2023-39518

CVSS v3.1

5.4

Medium

VectorAV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions social-media-skeleton versions 1.0.0 through 1.0.3
Description The issue is a stored cross-site scripting vulnerability in an uncompleted social media project implemented using PHP, MySQL, CSS, JavaScript, and HTML.
Recommendations For versions 1.0.0 through 1.0.3, update to a version that includes the patch for this issue, as the problem is resolved in a version after 1.0.3.

Exploit

Fix

XSS

Weakness Enumeration

Related Identifiers

CVE-2023-39518
GHSA-2JXX-R967-F76P

Affected Products

Social Media Skeleton