CVE-2023-46471: XSS
Published Nov 20, 2023
·Updated
Cross Site Scripting vulnerability in Space Applications Services Yamcs v.5.8.6 allows a remote attacker to execute arbitrary code via the text variable scriptContainer of the ScriptViewer.
Affected Software
1 affected component
Spaceapplications Yacms=5.8.6
Event History
Nov 20, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·09:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2023-46471.
2
What is the severity of CVE-2023-46471?
The severity of CVE-2023-46471 is medium with a severity value of 5.4.
3
How does CVE-2023-46471 occur?
CVE-2023-46471 occurs due to a Cross Site Scripting vulnerability in Space Applications Services Yamcs v.5.8.6.
4
How can a remote attacker exploit CVE-2023-46471?
A remote attacker can exploit CVE-2023-46471 by executing arbitrary code using the text variable scriptContainer of the ScriptViewer.
5
Is there a fix for CVE-2023-46471?
There is currently no known fix for CVE-2023-46471. It is recommended to follow the guidance provided by the software vendor or developer.