CVE-2023-49453: XSS
Published Mar 12, 2024
·Updated
Reflected cross-site scripting (XSS) vulnerability in Racktables v0.22.0 and before, allows local attackers to execute arbitrary code and obtain sensitive information via the search component in index.php.
Affected Software
2 affected components
Racktables Project Racktables<=0.22.0
Racktables Racktables<0.22.0
Event History
Mar 12, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2023-49453?
CVE-2023-49453 is a high-severity vulnerability that allows local attackers to execute arbitrary code.
2
How do I fix CVE-2023-49453?
To fix CVE-2023-49453, upgrade Racktables to version 0.22.1 or later.
3
What type of vulnerability is CVE-2023-49453?
CVE-2023-49453 is a reflected cross-site scripting (XSS) vulnerability.
4
Who is affected by CVE-2023-49453?
CVE-2023-49453 affects Racktables version 0.22.0 and earlier.
5
What can attackers achieve with CVE-2023-49453?
Attackers can execute arbitrary code and obtain sensitive information via the search component in index.php.