CVE-2023-50565: XSS
Published Dec 14, 2023
·Updated
A cross-site scripting (XSS) vulnerability in the component /logs/dopost.html in RPCMS v3.5.5 allows attackers to execute arbitrary web scripts or HTML via a crafted payload.
Affected Software
1 affected component
RPCMS RPCMS=3.5.5
Event History
Dec 14, 2023
CVE Published
12:00 AM
Data Sourced
12:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2023-50565?
The severity of CVE-2023-50565 is rated as medium with a CVSS score of 5.4.
2
How can I exploit the cross-site scripting vulnerability in RPCMS v3.5.5?
Attackers can execute arbitrary web scripts or HTML by using a crafted payload in the component /logs/dopost.html in RPCMS v3.5.5.
3
What software version is affected by CVE-2023-50565?
The cross-site scripting vulnerability in CVE-2023-50565 affects RPCMS version 3.5.5.
4
Is there a fix available for the XSS vulnerability in RPCMS v3.5.5?
Users should apply the patch provided by the vendor to mitigate the cross-site scripting vulnerability in RPCMS v3.5.5.