CVE-2023-43828: XSS
A Cross-site scripting (XSS) vulnerability in /panel/languages/ of Subrion v4.2.1 allow attackers to execute arbitrary web scripts or HTML via a crafted payload injected into 'Title' parameter.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2023-43828?
CVE-2023-43828 is a Cross-site scripting (XSS) vulnerability in Subrion v4.2.1 that allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the 'Title' parameter.
How does CVE-2023-43828 affect Subrion v4.2.1?
CVE-2023-43828 affects Subrion v4.2.1 by allowing attackers to execute arbitrary web scripts or HTML through the 'Title' parameter in the /panel/languages/ module.
What is the severity of CVE-2023-43828?
CVE-2023-43828 has a severity level of medium with a CVSS score of 5.4.
How can I fix CVE-2023-43828 in Subrion v4.2.1?
To fix CVE-2023-43828 in Subrion v4.2.1, it is recommended to update to a version that has patched the vulnerability or apply any relevant security patches.
Is there any reference or more information about CVE-2023-43828?
Yes, you can find more information about CVE-2023-43828 in the following link: https://github.com/al3zx/xss_languages_subrion_4.2.1