First published: Sat Jul 08 2023(Updated: )
A vulnerability was found in GZ Scripts Property Listing Script 1.0. It has been rated as problematic. This issue affects some unknown processing of the file /preview.php. The manipulation of the argument page/layout/sort_by leads to cross site scripting. The attack may be initiated remotely. The associated identifier of this vulnerability is VDB-233351. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.
Credit: cna@vuldb.com cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
Gzscripts Property Listing Script | =1.0 | |
=1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2023-3557 is medium.
CVE-2023-3557 affects GZ Scripts Property Listing Script 1.0.
The vulnerability in GZ Scripts Property Listing Script 1.0 is a cross-site scripting (XSS) vulnerability caused by the manipulation of the 'page/layout/sort_by' argument in the 'preview.php' file.
The cross-site scripting vulnerability in GZ Scripts Property Listing Script 1.0 can be exploited remotely.
Yes, references for CVE-2023-3557 can be found at the following links: [link1](https://vuldb.com/?id.233351) [link2](https://vuldb.com/?ctiid.233351).