5.4
CVSSv3

CVE-2023-38911

Published: 18/08/2023 Updated: 22/08/2023
CVSS v3 Base Score: 5.4 | Impact Score: 2.7 | Exploitability Score: 2.3
VMScore: 0

Vulnerability Summary

A Cross-Site Scripting (XSS) vulnerability in CSZ CMS 1.3.0 allows malicious users to execute arbitrary code via a crafted payload to the Gallery parameter in the YouTube URL fields.

Vulnerable Product Search on Vulmon Subscribe to Product

cszcms csz cms 1.3.0

Exploits

CSZ CMS version 130 suffers from multiple persistent cross site scripting vulnerabilities ...