CVE-2023-0309: Cross-site Scripting (XSS) - Stored in thorsten/phpmyfaq
Published Jan 15, 2023
·Updated
Cross-site Scripting (XSS) - Stored in GitHub repository thorsten/phpmyfaq prior to 3.1.10.
Affected Software
1 affected component
PhpMyFaq phpmyfaq<3.1.10
Remediation
Event History
Jan 15, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2023-0309?
The severity of CVE-2023-0309 is high, with a CVSS score of 5.4.
2
How does CVE-2023-0309 affect the phpMyFAQ software?
CVE-2023-0309 affects the phpMyFAQ software version prior to 3.1.10.
3
What is Cross-Site Scripting (XSS)?
Cross-Site Scripting (XSS) is a vulnerability that allows attackers to inject malicious scripts into web pages viewed by users.
4
How was the CVE-2023-0309 vulnerability discovered?
The CVE-2023-0309 vulnerability was discovered in the GitHub repository thorsten/phpmyfaq.
5
How can I fix the CVE-2023-0309 vulnerability in phpMyFAQ?
To fix the CVE-2023-0309 vulnerability, it is recommended to update the phpMyFAQ software to version 3.1.10 or newer.