CVE-2023-49117
CVE-2023-49117
Vexday Risk Score
3Bajo
Decisión SSVC (CISA)
Track
Sin señal de explotación → monitorear
CVSS —EPSS 0.3%KEV nãoPoC —Nuclei —Metasploit —Patch —
Ciclo de vida
26 dic 2023Publicada en NVD
Recomendación: Monitorear — sin señal de explotación por ahora.
PowerCMS (6 Series, 5 Series, and 4 Series) contains a stored cross-site scripting vulnerability. If this vulnerability is exploited, an arbitrary script may be executed on a logged-in user's web browser. Note that all versions of PowerCMS 3 Series and earlier which are unsupported (End-of-Life, EOL) are also affected by this vulnerability.
Productos afectados
Alfasado Inc. · PowerCMS (PowerCMS 4 Series)Alfasado Inc. · PowerCMS (PowerCMS 5 Series)Alfasado Inc. · PowerCMS (PowerCMS 6 Series)¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →