CVE-2023-49469: XSS
Published Dec 28, 2023
·Updated
Reflected Cross Site Scripting (XSS) vulnerability in Shaarli v0.12.2, allows remote attackers to execute arbitrary code via search tag function.
Affected Software
1 affected component
Shaarli Project Shaarli=0.12.2
Event History
Dec 28, 2023
CVE Published
12:00 AM
Data Sourced
12:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2023-49469?
CVE-2023-49469 has a high severity rating due to its ability to allow remote code execution through reflected XSS.
2
How do I fix CVE-2023-49469?
To fix CVE-2023-49469, you should upgrade to Shaarli version 0.13.0 or later, which addresses this vulnerability.
3
What software is affected by CVE-2023-49469?
CVE-2023-49469 affects Shaarli version 0.12.2 specifically.
4
What type of vulnerability is CVE-2023-49469?
CVE-2023-49469 is a Reflected Cross Site Scripting (XSS) vulnerability.
5
Can CVE-2023-49469 be exploited remotely?
Yes, CVE-2023-49469 can be exploited remotely by attackers through the search tag function.