CVE-2023-50297
CVE-2023-50297
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS —EPSS 0.4%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
26 Dec 2023Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
Open redirect vulnerability in PowerCMS (6 Series, 5 Series, and 4 Series) allows a remote unauthenticated attacker to redirect users to arbitrary web sites via a specially crafted URL. Note that all versions of PowerCMS 3 Series and earlier which are unsupported (End-of-Life, EOL) are also affected by this vulnerability.
Affected products
Alfasado Inc. · PowerCMS (PowerCMS 4 Series)Alfasado Inc. · PowerCMS (PowerCMS 5 Series)Alfasado Inc. · PowerCMS (PowerCMS 6 Series)Want to know if your infrastructure is exposed to this?
Talk to TrueHacking →