CVE-2023-3860: phpscriptpoint Insurance page.php cross site scripting
A vulnerability was found in phpscriptpoint Insurance 1.2. It has been classified as problematic. Affected is an unknown function of the file /page.php. The manipulation leads to cross site scripting. It is possible to launch the attack remotely. The identifier of this vulnerability is VDB-235212. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-3860?
CVE-2023-3860 has been classified as problematic due to its potential for cross-site scripting attacks.
How do I fix CVE-2023-3860?
To mitigate CVE-2023-3860, it is recommended to validate and sanitize user input within the affected functions in /page.php.
What systems are affected by CVE-2023-3860?
CVE-2023-3860 affects version 1.2 of phpscriptpoint Insurance.
Can CVE-2023-3860 be exploited remotely?
Yes, CVE-2023-3860 can be exploited remotely through cross-site scripting vulnerabilities.
What type of vulnerability is CVE-2023-3860?
CVE-2023-3860 is classified as a cross-site scripting vulnerability.