CVE-2023-39067: XSS
Published Sep 11, 2023
·Updated
Cross Site Scripting vulnerability in ZLMediaKiet v.4.0 and v.5.0 allows an attacker to execute arbitrary code via a crafted script to the URL.
Affected Software
2 affected components
ZLMediaKit ZLMediaKit=4.0
ZLMediaKit ZLMediaKit=5.0
Event History
Sep 11, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is CVE-2023-39067?
CVE-2023-39067 is a Cross Site Scripting vulnerability in ZLMediaKiet v.4.0 and v.5.0 that allows an attacker to execute arbitrary code via a crafted script to the URL.
2
How severe is CVE-2023-39067?
CVE-2023-39067 has a severity rating of 6.1, which is considered medium.
3
How can an attacker exploit CVE-2023-39067?
An attacker can exploit CVE-2023-39067 by sending a specially crafted script to the URL, which allows them to execute arbitrary code.
4
Which versions of ZLMediaKiet are affected by CVE-2023-39067?
CVE-2023-39067 affects ZLMediaKiet v.4.0 and v.5.0.
5
Is there a fix available for CVE-2023-39067?
At the moment, there is no known fix available for CVE-2023-39067. It is recommended to follow the vendor's advisory for any updates or patches.