NA

CVE-2023-30788

Published: 08/05/2023 Updated: 12/05/2023
CVSS v3 Base Score: 5.4 | Impact Score: 2.7 | Exploitability Score: 2.3
VMScore: 0

Vulnerability Summary

MonicaHQ version 4.0.0 allows an authenticated remote malicious user to execute malicious code in the application via CSTI in the `people/add` endpoint and nickName, description, lastName, middleName and firstName parameter.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

monicahq monica 4.0.0