CVE-2023-43962: XSS
Published Dec 9, 2024
·Updated
Cross Site Scripting vulnerability in Xunrui CMS Public Edition v.4.6.1 allows a remote attacker to execute arbitrary code via the project name function in the project settings tab.
Affected Software
1 affected component
Xunrui CMS Public Edition
Event History
Dec 9, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·05:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2023-43962?
CVE-2023-43962 is classified as a high severity Cross Site Scripting vulnerability.
2
How can I fix CVE-2023-43962?
To fix CVE-2023-43962, update Xunrui CMS Public Edition to the latest version that addresses this vulnerability.
3
Who is affected by CVE-2023-43962?
Any users of Xunrui CMS Public Edition v.4.6.1 are affected by CVE-2023-43962.
4
What are the potential impacts of CVE-2023-43962?
CVE-2023-43962 allows attackers to execute arbitrary code, potentially compromising sensitive data and system integrity.
5
Is there a workaround for CVE-2023-43962 until I can apply a fix?
As a workaround for CVE-2023-43962, consider restricting access to the project settings tab until a patch can be applied.