First published: Wed Oct 04 2023(Updated: )
Rite CMS 3.0 has Multiple Cross-Site scripting (XSS) vulnerabilities that allow attackers to execute arbitrary code via a payload crafted in the Home Page fields in the Administration menu.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
RiteCMS | =3.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2023-43877 is medium.
The CWE of CVE-2023-43877 is CWE-79.
Attackers can exploit CVE-2023-43877 by crafting a malicious payload in the Home Page fields in the Administration menu, which allows them to execute arbitrary code.
Rite CMS version 3.0 is affected by CVE-2023-43877.
It is recommended to update Rite CMS to a version that addresses the Cross-Site scripting (XSS) vulnerabilities associated with CVE-2023-43877.