CVE-2023-0566: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in froxlor/froxlor
Published Jan 29, 2023
·Updated
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in froxlor/froxlor prior to 2.0.10.
Affected Software
1 affected component
Froxlor Froxlor<2.0.10
Remediation
Event History
Jan 29, 2023
CVE Published
12:00 AM
Data Sourced
12:00 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2023-0566?
The severity of CVE-2023-0566 is medium with a CVSS score of 4.8.
2
What is the vulnerability in froxlor/froxlor prior to 2.0.10?
The vulnerability in froxlor/froxlor prior to 2.0.10 is an improper neutralization of input during web page generation, also known as cross-site scripting (XSS).
3
How does CVE-2023-0566 affect froxlor/froxlor?
CVE-2023-0566 affects froxlor/froxlor prior to version 2.0.10 and can lead to cross-site scripting (XSS) attacks.
4
How can I fix CVE-2023-0566 in froxlor/froxlor?
To fix CVE-2023-0566 in froxlor/froxlor, you should update to version 2.0.10 or later.
5
Where can I find more information about CVE-2023-0566?
You can find more information about CVE-2023-0566 on the GitHub commit and the huntr.dev bounty page.