6.1
CVSSv3

CVE-2023-6838

Published: 15/12/2023 Updated: 19/12/2023
CVSS v3 Base Score: 6.1 | Impact Score: 2.7 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

Reflected XSS vulnerability can be exploited by tampering a request parameter in Authentication Endpoint. This can be performed in both authenticated and unauthenticated requests.

Vulnerable Product Search on Vulmon Subscribe to Product

wso2 api manager 3.1.0

wso2 api manager 3.2.0

wso2 identity server as key manager 5.10.0

wso2 identity server 5.10.0