Lucene search

K
cvelist@huntrdevCVELIST:CVE-2023-5864
HistoryOct 31, 2023 - 12:00 a.m.

CVE-2023-5864 Cross-site Scripting (XSS) - Stored in thorsten/phpmyfaq

2023-10-3100:00:19
CWE-79
@huntrdev
www.cve.org
2
cve-2023-5864
cross-site scripting
stored
github
repository
thorsten
phpmyfaq
prior
version 3.2.1

CVSS3

7.4

Attack Vector

PHYSICAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

CHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.0/AV:P/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H

EPSS

0

Percentile

14.0%

Cross-site Scripting (XSS) - Stored in GitHub repository thorsten/phpmyfaq prior to 3.2.1.

CNA Affected

[
  {
    "vendor": "thorsten",
    "product": "thorsten/phpmyfaq",
    "versions": [
      {
        "version": "unspecified",
        "lessThan": "3.2.1",
        "status": "affected",
        "versionType": "custom"
      }
    ]
  }
]

CVSS3

7.4

Attack Vector

PHYSICAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

CHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.0/AV:P/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H

EPSS

0

Percentile

14.0%