Lucene search

K
prionPRIOn knowledge basePRION:CVE-2023-6027
HistoryNov 30, 2023 - 2:15 p.m.

Cross site scripting

2023-11-3014:15:00
PRIOn knowledge base
www.prio-n.com
2
vulnerability
javascript payload
improper encoding
user-controlled entries

5.8 Medium

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

14.2%

A critical flaw has been identified in elijaa/phpmemcachedadmin affecting version 1.3.0, specifically related to a stored XSS vulnerability. This vulnerability allows malicious actors to insert a carefully crafted JavaScript payload. The issue arises from improper encoding of user-controlled entries in the “/pmcadmin/configure.php” parameter.

CPENameOperatorVersion
phpmemcachedadmineq1.3.0

5.8 Medium

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

14.2%

Related for PRION:CVE-2023-6027