Lucene search

K
nvd[email protected]NVD:CVE-2023-41847
HistoryOct 02, 2023 - 9:15 a.m.

CVE-2023-41847

2023-10-0209:15:11
CWE-79
web.nvd.nist.gov
2
cve-2023-41847
authenticated
stored cross-site scripting
wen solutions
notice bar plugin
vulnerability

CVSS3

5.4

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

REQUIRED

Scope

CHANGED

Confidentiality Impact

LOW

Integrity Impact

LOW

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N

EPSS

0.001

Percentile

18.6%

Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in WEN Solutions Notice Bar plugin <= 3.1.0 versions.

Affected configurations

Nvd
Node
wensolutionsnotice_barRange3.1.0wordpress
VendorProductVersionCPE
wensolutionsnotice_bar*cpe:2.3:a:wensolutions:notice_bar:*:*:*:*:*:wordpress:*:*

CVSS3

5.4

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

REQUIRED

Scope

CHANGED

Confidentiality Impact

LOW

Integrity Impact

LOW

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N

EPSS

0.001

Percentile

18.6%