CVE-2023-3536: SimplePHPscripts Funeral Script PHP URL Parameter preview.php cross site scripting
A vulnerability was found in SimplePHPscripts Funeral Script PHP 3.1. It has been rated as problematic. Affected by this issue is some unknown functionality of the file /preview.php of the component URL Parameter Handler. The manipulation leads to cross site scripting. The attack may be launched remotely. The identifier of this vulnerability is VDB-233288.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-3536?
CVE-2023-3536 has been rated as problematic due to its potential for cross site scripting attacks.
How do I fix CVE-2023-3536?
To fix CVE-2023-3536, ensure that you sanitize all user input in the /preview.php component to prevent cross site scripting vulnerabilities.
What component is affected by CVE-2023-3536?
CVE-2023-3536 affects the URL Parameter Handler in the SimplePHPscripts Funeral Script PHP version 3.1.
What type of vulnerability is CVE-2023-3536?
CVE-2023-3536 is a cross site scripting vulnerability, which allows attackers to inject malicious scripts into web pages.
Which versions of the SimplePHPscripts Funeral Script are impacted by CVE-2023-3536?
CVE-2023-3536 impacts version 3.1 of SimplePHPscripts Funeral Script PHP.