CVE-2023-31860: XSS
Published May 23, 2023
·Updated
Wuzhi CMS v3.1.2 has a storage type XSS vulnerability in the backend of the Five Finger CMS b2b system.
Affected Software
2 affected components
Wuzhicms Wuzhi Cms=3.1.2
Wuzhicms Wuzhicms=3.1.2
Event History
May 23, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·08:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2023-31860?
CVE-2023-31860 is a storage type XSS vulnerability in the backend of the Five Finger CMS b2b system, found in Wuzhi CMS v3.1.2.
2
How severe is CVE-2023-31860?
CVE-2023-31860 has a severity keyword of medium and a severity value of 5.4.
3
How does CVE-2023-31860 affect Wuzhi CMS?
CVE-2023-31860 affects Wuzhi CMS v3.1.2.
4
Is there a fix available for CVE-2023-31860?
Currently, there is no known fix available for CVE-2023-31860.
5
What is the Common Weakness Enumeration (CWE) for CVE-2023-31860?
The CWE for CVE-2023-31860 is CWE-79 (Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')).