First published: Wed Aug 23 2023(Updated: )
An issue was discovered in MISP 2.4.174. In app/Controller/DashboardsController.php, a reflected XSS issue exists via the id parameter upon a dashboard edit.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Misp Misp | =2.4.174 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID of this issue is CVE-2023-41098.
The severity of CVE-2023-41098 is medium with a severity value of 6.1.
The vulnerability manifests as a reflected XSS issue in app/Controller/DashboardsController.php.
The affected software version is MISP 2.4.174.
To fix CVE-2023-41098, update MISP to version 2.4.175 or later.