CVE-2023-3535: SimplePHPscripts FAQ Script PHP URL Parameter preview.php cross site scripting
A vulnerability was found in SimplePHPscripts FAQ Script PHP 2.3. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file /preview.php of the component URL Parameter Handler. The manipulation leads to cross site scripting. The attack can be launched remotely. The associated identifier of this vulnerability is VDB-233287.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-3535?
CVE-2023-3535 has been classified as a problematic vulnerability due to its potential for cross site scripting.
How do I fix CVE-2023-3535?
To fix CVE-2023-3535, sanitize input to the URL Parameter Handler in the /preview.php file to prevent cross site scripting.
What software is affected by CVE-2023-3535?
CVE-2023-3535 affects SimplePHPscripts FAQ Script PHP version 2.3.
What type of vulnerability is CVE-2023-3535?
CVE-2023-3535 is a cross site scripting (XSS) vulnerability.
Is there a known exploit for CVE-2023-3535?
Yes, CVE-2023-3535 is known to be exploitable, allowing attackers to execute malicious scripts.