Cross-site Scripting (XSS) - DOM in GitHub repository thorsten/phpmyfaq prior to 3.1.12.
References
Link | Resource |
---|---|
https://github.com/thorsten/phpmyfaq/commit/49db615c300ae0f87795f20570f6f5bdccb1d2f2 | Patch |
https://huntr.dev/bounties/8ab09a1c-cfd5-4ce0-aae3-d33c93318957 | Exploit Patch Third Party Advisory |
Configurations
History
11 Apr 2023, 17:38
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:a:phpmyfaq:phpmyfaq:*:*:*:*:*:*:*:* | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 5.4 |
First Time |
Phpmyfaq
Phpmyfaq phpmyfaq |
|
References | (CONFIRM) https://huntr.dev/bounties/8ab09a1c-cfd5-4ce0-aae3-d33c93318957 - Exploit, Patch, Third Party Advisory | |
References | (MISC) https://github.com/thorsten/phpmyfaq/commit/49db615c300ae0f87795f20570f6f5bdccb1d2f2 - Patch |
05 Apr 2023, 17:35
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-04-05 17:15
Updated : 2023-04-11 17:38
NVD link : CVE-2023-1882
Mitre link : CVE-2023-1882
JSON object : View
Products Affected
phpmyfaq
- phpmyfaq
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')