CVE-2022-23871: XSS
Multiple cross-site scripting (XSS) vulnerabilities in the component outcomesaddProcess.php of Gibbon CMS v22.0.01 allow attackers to execute arbitrary web scripts or HTML via a crafted payload insterted into the name, category, description parameters.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-23871?
CVE-2022-23871 is a vulnerability that allows attackers to execute arbitrary web scripts or HTML through crafted payloads in Gibbon CMS v22.0.01.
How severe is CVE-2022-23871?
CVE-2022-23871 has a severity score of 5.4, which is considered medium.
What is the affected software for CVE-2022-23871?
The affected software for CVE-2022-23871 is Gibbon CMS v22.0.01.
How can attackers exploit CVE-2022-23871?
Attackers can exploit CVE-2022-23871 by inserting crafted payloads into the name, category, or description parameters.
Are there any known fixes or patches for CVE-2022-23871?
Currently, there are no known fixes or patches available for CVE-2022-23871. It is recommended to monitor the official Gibbon CMS website for any updates or security advisories.