5.4
CVSSv3

CVE-2023-28158

Published: 29/03/2023 Updated: 18/04/2023
CVSS v3 Base Score: 5.4 | Impact Score: 2.7 | Exploitability Score: 2.3
VMScore: 0

Vulnerability Summary

Privilege escalation via stored XSS using the file upload service to upload malicious content. The issue can be exploited only by authenticated users which can create directory name to inject some XSS content and gain some privileges such admin user.

Vulnerable Product Search on Vulmon Subscribe to Product

apache archiva