PT-2023-27965 · Phpjabbers · Phpjabbers Php Forum Script
CVE-2023-41538
·
Publicado
2023-08-30
·
Atualizado
2024-07-23
CVSS v3.1
6.1
Média
| Vetor | AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N |
Name of the Vulnerable Software and Affected Versions
phpjabbers PHP Forum Script version 3.0
Description
The issue concerns a Cross Site Scripting (XSS) flaw via the
keyword parameter. This allows for potential malicious script injection, affecting the security of the application.Recommendations
For phpjabbers PHP Forum Script version 3.0, consider restricting or sanitizing input for the
keyword parameter to prevent XSS attacks until a proper fix is available.Exploit
Correção
XSS
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Phpjabbers Php Forum Script