Lucene search

K
nvd[email protected]NVD:CVE-2023-32797
HistoryAug 25, 2023 - 12:15 p.m.

CVE-2023-32797

2023-08-2512:15:08
CWE-79
web.nvd.nist.gov
3
cross-site scripting
unauthenticated
vulnerability
i thirteen web solution
carousel slider
lightbox plugin
version 1.0.22

CVSS3

6.1

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

CHANGED

Confidentiality Impact

LOW

Integrity Impact

LOW

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

EPSS

0.001

Percentile

27.9%

Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in I Thirteen Web Solution video carousel slider with lightbox plugin <= 1.0.22 versions.

Affected configurations

Nvd
Node
i13websolutionvideo_carousel_slider_with_lightboxRange1.0.22wordpress
VendorProductVersionCPE
i13websolutionvideo_carousel_slider_with_lightbox*cpe:2.3:a:i13websolution:video_carousel_slider_with_lightbox:*:*:*:*:*:wordpress:*:*

CVSS3

6.1

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

CHANGED

Confidentiality Impact

LOW

Integrity Impact

LOW

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

EPSS

0.001

Percentile

27.9%

Related for NVD:CVE-2023-32797