First published: Mon Dec 09 2024(Updated: )
Cross Site Scripting vulnerability in Xunrui CMS Public Edition v.4.6.1 allows a remote attacker to execute arbitrary code via the project name function in the project settings tab.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Xunruicms |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-43962 is classified as a high severity Cross Site Scripting vulnerability.
To fix CVE-2023-43962, update Xunrui CMS Public Edition to the latest version that addresses this vulnerability.
Any users of Xunrui CMS Public Edition v.4.6.1 are affected by CVE-2023-43962.
CVE-2023-43962 allows attackers to execute arbitrary code, potentially compromising sensitive data and system integrity.
As a workaround for CVE-2023-43962, consider restricting access to the project settings tab until a patch can be applied.