First published: Wed Jul 19 2023(Updated: )
A vulnerability has been found in Creativeitem Atlas Business Directory Listing 2.13 and classified as problematic. Affected by this vulnerability is an unknown functionality of the file /home/filter_listings. The manipulation of the argument price-range leads to cross site scripting. The attack can be launched remotely. The associated identifier of this vulnerability is VDB-234427. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.
Credit: cna@vuldb.com cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
Creativeitem Atlas | =2.13 | |
=2.13 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2023-3755 is medium with a CVSS score of 6.1.
An attacker can exploit CVE-2023-3755 to perform cross-site scripting (XSS) attacks.
CVE-2023-3755 affects Creativeitem Atlas Business Directory Listing version 2.13, allowing for the manipulation of the 'price-range' argument to perform XSS attacks.
To fix CVE-2023-3755, it is recommended to update Creativeitem Atlas Business Directory Listing to a version that addresses the vulnerability.
Cross-site scripting (XSS) is a type of security vulnerability that allows attackers to inject malicious scripts into web pages viewed by other users.