5.2
CVSSv3

CVE-2023-43340

Published: 19/10/2023 Updated: 27/10/2023
CVSS v3 Base Score: 5.2 | Impact Score: 2.7 | Exploitability Score: 2
VMScore: 0

Vulnerability Summary

Cross-site scripting (XSS) vulnerability in evolution v.3.2.3 allows a local malicious user to execute arbitrary code via a crafted payload injected into the cmsadmin, cmsadminemail, cmspassword and cmspasswordconfim parameters

Vulnerable Product Search on Vulmon Subscribe to Product

evo evolution cms 3.2.3