First published: Thu Sep 28 2023(Updated: )
Rite CMS 3.0 has Multiple Cross-Site scripting (XSS) vulnerabilities that allow attackers to execute arbitrary code via a crafted payload into the Main Menu Items in the Administration Menu.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
RiteCMS | =3.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-43878 is a vulnerability in Rite CMS 3.0 that allows attackers to execute arbitrary code via crafted payload in the Main Menu Items in the Administration Menu.
CVE-2023-43878 has a severity rating of 5.4, which is considered medium.
The Rite CMS 3.0 version is affected by CVE-2023-43878.
CVE-2023-43878 is associated with CWE-79, which is a category for Cross-Site Scripting (XSS) vulnerabilities.
Yes, you can find more information about CVE-2023-43878 at the following link: <a href='https://github.com/sromanhu/RiteCMS-Stored-XSS---MainMenu/blob/main/README.md'>https://github.com/sromanhu/RiteCMS-Stored-XSS---MainMenu/blob/main/README.md</a>.