First published: Fri Aug 04 2023(Updated: )
install/aiz-uploader/upload in Campcodes Online Matrimonial Website System Script 3.3 allows XSS via a crafted SVG document.
Credit: Rajdip Dey Sarkar cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Campcodes Complete Online Matrimonial Website System Script | =3.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2023-39115 is classified as high due to its potential for Cross-Site Scripting attacks.
To fix CVE-2023-39115, it is recommended to sanitize user input and implement proper validation for uploaded SVG documents.
CVE-2023-39115 is a Cross-Site Scripting (XSS) vulnerability.
CVE-2023-39115 affects version 3.3 of the Campcodes Online Matrimonial Website System Script.
Yes, CVE-2023-39115 can be exploited by an attacker to execute arbitrary scripts in the context of a victim's browser.