NA

CVE-2023-30057

Published: 09/05/2023 Updated: 16/05/2023
CVSS v3 Base Score: 5.4 | Impact Score: 2.7 | Exploitability Score: 2.3
VMScore: 0

Vulnerability Summary

Multiple stored cross-site scripting (XSS) vulnerabilities in FICO Origination Manager Decision Module 4.8.1 allow malicious users to execute arbitrary web scripts or HTML via a crafted payload.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

fico origination manager decision 4.8.1

Exploits

Multiple persistent cross site scripting vulnerabilities in FICO Origination Manager Decision Module version 481 allow an attacker to execute code in the context of the victim's browser using a crafted payload Additionally, an attacker with initial access to the application, can get the JSESSIONID cookie of another user and take over their sessi ...