CVE-2023-48255

The vulnerability allows an unauthenticated remote attacker to send malicious network requests containing arbitrary client-side script code and obtain its execution inside a victim’s session via a crafted URL, HTTP request, or simply by waiting for the victim to view the poisoned log.
CVSS

No CVSS.

Configurations

No configuration.

Information

Published : 2024-01-10 13:15

Updated : 2024-01-10 13:56


NVD link : CVE-2023-48255

Mitre link : CVE-2023-48255


JSON object : View

Products Affected

No product.

CWE

No CWE.