CVE-2023-36291: XSS
Published Jul 3, 2023
·Updated
Cross Site Scripting vulnerability in Maxsite CMS v.108.7 allows a remote attacker to execute arbitrary code via the fcontent parameter in the admin/pagenew file.
Affected Software
1 affected component
Maxsite MaxSite CMS=108.7
Event History
Jul 3, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·09:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2023-36291?
CVE-2023-36291 is classified as a high severity cross-site scripting vulnerability.
2
How do I fix CVE-2023-36291?
To mitigate CVE-2023-36291, update Maxsite CMS to the latest version that addresses this vulnerability.
3
What type of vulnerability is CVE-2023-36291?
CVE-2023-36291 is a cross-site scripting (XSS) vulnerability.
4
What is affected by CVE-2023-36291?
Maxsite CMS version 108.7 is affected by CVE-2023-36291.
5
What is the impact of CVE-2023-36291?
The impact of CVE-2023-36291 is that it allows remote attackers to execute arbitrary code.