PT-2023-30619 · Unknown · Themepoints Accordion

Ngô Thiên An

·

Published

2023-11-22

·

Updated

2023-11-28

·

CVE-2023-47809

CVSS v3.1

5.9

Medium

VectorAV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:L
Name of the Vulnerable Software and Affected Versions Themepoints Accordion plugin versions prior to 2.7
Description The issue is related to improper neutralization of input during web page generation, which can lead to Cross-site Scripting.
Recommendations For Themepoints Accordion plugin versions prior to 2.7, update to version 2.7 or later to resolve the issue.

Exploit

Fix

XSS

Weakness Enumeration

Related Identifiers

CVE-2023-47809

Affected Products

Themepoints Accordion