CVE-2023-3109: Cross-site Scripting (XSS) - Stored in admidio/admidio
Published Jun 5, 2023
·Updated
Cross-site Scripting (XSS) - Stored in GitHub repository admidio/admidio prior to 4.2.8.
Affected Software
1 affected component
Admidio Admidio<4.2.8
Remediation
Event History
Jun 5, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·04:15 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for this Cross-site Scripting (XSS) vulnerability?
The vulnerability ID for this Cross-site Scripting (XSS) vulnerability is CVE-2023-3109.
2
What is the severity of CVE-2023-3109?
The severity of CVE-2023-3109 is medium with a severity value of 5.4.
3
What software is affected by CVE-2023-3109?
The software affected by CVE-2023-3109 is Admidio version up to exclusive 4.2.8.
4
How can I fix CVE-2023-3109?
To fix CVE-2023-3109, update Admidio to version 4.2.8 or later.
5
Where can I find more information about CVE-2023-3109?
You can find more information about CVE-2023-3109 at the following references: [GitHub commit](https://github.com/admidio/admidio/commit/a7c211b835cafe1158932fbfcff9e5552e57510a), [Huntr](https://huntr.dev/bounties/6fa6070e-8f7f-43ae-8a84-e36b28256123).