Lucene search

K
cvelist@huntrdevCVELIST:CVE-2023-2103
HistoryApr 15, 2023 - 12:00 a.m.

CVE-2023-2103 Cross-site Scripting (XSS) - Stored in alextselegidis/easyappointments

2023-04-1500:00:00
CWE-79
@huntrdev
www.cve.org
3
cve-2023-2103
stored
github
repository
prior
version 1.5.0

CVSS3

4.3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

HIGH

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

LOW

Integrity Impact

LOW

Availability Impact

LOW

CVSS:3.0/AV:N/AC:L/PR:H/UI:R/S:U/C:L/I:L/A:L

EPSS

0.001

Percentile

34.5%

Cross-site Scripting (XSS) - Stored in GitHub repository alextselegidis/easyappointments prior to 1.5.0.

CNA Affected

[
  {
    "vendor": "alextselegidis",
    "product": "alextselegidis/easyappointments",
    "versions": [
      {
        "version": "unspecified",
        "lessThan": "1.5.0",
        "status": "affected",
        "versionType": "custom"
      }
    ]
  }
]

CVSS3

4.3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

HIGH

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

LOW

Integrity Impact

LOW

Availability Impact

LOW

CVSS:3.0/AV:N/AC:L/PR:H/UI:R/S:U/C:L/I:L/A:L

EPSS

0.001

Percentile

34.5%

Related for CVELIST:CVE-2023-2103