CVE-2023-49494: XSS
Published Dec 11, 2023
·Updated
DedeCMS v5.7.111 was discovered to contain a reflective cross-site scripting (XSS) vulnerability via the component selectmediapostwangEditor.php.
Affected Software
1 affected component
DedeCMS Dedecms=5.7.111
Event History
Dec 11, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·09:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2023-49494?
CVE-2023-49494 has been rated as a medium severity vulnerability.
2
How do I fix CVE-2023-49494?
To fix CVE-2023-49494, update your DedeCMS to the latest version available.
3
What type of vulnerability is CVE-2023-49494?
CVE-2023-49494 is a reflective cross-site scripting (XSS) vulnerability.
4
Which version of DedeCMS is affected by CVE-2023-49494?
CVE-2023-49494 affects DedeCMS version 5.7.111.
5
What component is involved in CVE-2023-49494?
The vulnerable component involved in CVE-2023-49494 is select_media_post_wangEditor.php.