CVE-2023-47097: XSS
A Stored Cross-Site Scripting (XSS) vulnerability in the Server Template under System Setting in Virtualmin 7.7 allows remote attackers to inject arbitrary web script or HTML via the Template name field while creating server templates.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2023-47097?
CVE-2023-47097 is a Stored Cross-Site Scripting (XSS) vulnerability in the Server Template under System Setting in Virtualmin 7.7.
How does CVE-2023-47097 affect Virtualmin?
CVE-2023-47097 allows remote attackers to inject arbitrary web script or HTML via the Template name field while creating server templates in Virtualmin 7.7.
What is the severity of CVE-2023-47097?
The severity of CVE-2023-47097 is medium, with a severity value of 5.4.
How can CVE-2023-47097 be fixed?
To fix CVE-2023-47097, it is recommended to update to the latest version of Virtualmin.
Where can I find more information about CVE-2023-47097?
You can find more information about CVE-2023-47097 at the following link: [https://github.com/pavanughade43/Virtualmin-7.7/blob/main/CVE-2023-47097](https://github.com/pavanughade43/Virtualmin-7.7/blob/main/CVE-2023-47097)