CVE-2023-4517: Cross-site Scripting (XSS) - Stored in hestiacp/hestiacp
Published Oct 13, 2023
·Updated
Cross-site Scripting (XSS) - Stored in GitHub repository hestiacp/hestiacp prior to 1.8.6.
Affected Software
1 affected component
hestiacp HestiaCP<1.8.6
Remediation
Event History
Oct 13, 2023
CVE Published
via MITRE·12:24 PM
Data Sourced
via MITRE·12:24 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·01:15 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2023-4517?
CVE-2023-4517 is a Cross-site Scripting (XSS) vulnerability that was found in the GitHub repository hestiacp/hestiacp prior to version 1.8.6.
2
How severe is CVE-2023-4517?
CVE-2023-4517 has a severity score of 5.4, which is considered medium.
3
What is the affected software for CVE-2023-4517?
The affected software for CVE-2023-4517 is Hestiacp Hestiacp version up to and excluding 1.8.6.
4
What is the Common Vulnerabilities and Exposures (CVE) ID for this vulnerability?
The Common Vulnerabilities and Exposures (CVE) ID for this vulnerability is CVE-2023-4517.
5
How do I fix the Cross-site Scripting (XSS) vulnerability in hestiacp/hestiacp prior to version 1.8.6?
To fix the Cross-site Scripting (XSS) vulnerability, update hestiacp/hestiacp to version 1.8.6 or later.