5.4
CVSSv3

CVE-2023-44761

Published: 06/10/2023 Updated: 07/12/2023
CVSS v3 Base Score: 5.4 | Impact Score: 2.7 | Exploitability Score: 2.3
VMScore: 0

Vulnerability Summary

Multiple Cross Site Scripting (XSS) vulnerabilities in Concrete CMS versions affected to 8.5.13 and below, and 9.0.0 up to and including 9.2.1 allow a local malicious user to execute arbitrary code via a crafted script to the Forms of the Data objects.

Vulnerable Product Search on Vulmon Subscribe to Product

concretecms concrete cms 9.2.1