First published: Mon Jul 24 2023(Updated: )
A vulnerability has been found in phpscriptpoint Car Listing 1.6 and classified as problematic. This vulnerability affects unknown code of the file /search.php. The manipulation of the argument country/state/city leads to cross site scripting. The attack can be initiated remotely. VDB-235210 is the identifier assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
Phpscriptpoint Car Listing | =1.6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-3858 is classified as a problematic vulnerability due to its potential for remote exploitation.
To fix CVE-2023-3858, ensure you sanitize and validate user inputs in the /search.php file to prevent cross-site scripting.
CVE-2023-3858 is a cross-site scripting (XSS) vulnerability that can be exploited via manipulated inputs.
Yes, CVE-2023-3858 can be exploited remotely, allowing attackers to execute malicious scripts on affected systems.
CVE-2023-3858 affects version 1.6 of the Phpscriptpoint Car Listing software.