First published: Sun Jul 23 2023(Updated: )
A vulnerability classified as problematic was found in phpscriptpoint JobSeeker 1.5. Affected by this vulnerability is an unknown functionality of the file /search-result.php. The manipulation of the argument kw/lc/ct/cp/p leads to cross site scripting. The attack can be launched remotely. The associated identifier of this vulnerability is VDB-235207. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.
Credit: cna@vuldb.com cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
phpscriptpoint JobSeeker | =1.5 | |
=1.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-3855 is classified as a problematic vulnerability affecting phpscriptpoint JobSeeker 1.5.
CVE-2023-3855 allows for cross-site scripting attacks through manipulation of the search parameters in the file /search-result.php.
Mitigation for CVE-2023-3855 involves validating and sanitizing input to prevent untrusted data from being executed as a script.
CVE-2023-3855 impacts phpscriptpoint JobSeeker version 1.5.
As of now, there is no public patch available specifically addressing CVE-2023-3855 for phpscriptpoint JobSeeker 1.5.