CVE-2023-38964: XSS
Published Aug 4, 2023
·Updated
Creative Item Academy LMS 6.0 was discovered to contain a cross-site scripting (XSS) vulnerability.
Affected Software
1 affected component
Creativeitem Academy Learning Management System=6.0
Event History
Aug 4, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
04:15 PM
Description
Frequently Asked Questions
1
What is CVE-2023-38964?
CVE-2023-38964 is a cross-site scripting (XSS) vulnerability in Creative Item Academy LMS 6.0.
2
How severe is CVE-2023-38964?
CVE-2023-38964 has a severity score of 6.1, which is considered medium.
3
How does CVE-2023-38964 affect Creative Item Academy LMS?
CVE-2023-38964 affects Creative Item Academy LMS version 6.0 with a cross-site scripting (XSS) vulnerability.
4
How can I fix CVE-2023-38964?
To fix CVE-2023-38964, update Creative Item Academy LMS to a version that does not have the vulnerability.
5
What is the Common Weakness Enumeration (CWE) for CVE-2023-38964?
CVE-2023-38964 is associated with CWE-79, which refers to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting').