Lucene search

K
ubuntucveUbuntu.comUB:CVE-2023-29454
HistoryJul 13, 2023 - 12:00 a.m.

CVE-2023-29454

2023-07-1300:00:00
ubuntu.com
ubuntu.com
4
cve-2023-29454
stored xss
persistent xss
web application
unix

5.4 Medium

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

REQUIRED

Scope

CHANGED

Confidentiality Impact

LOW

Integrity Impact

LOW

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N

0.0005 Low

EPSS

Percentile

17.9%

Stored or persistent cross-site scripting (XSS) is a type of XSS where the
attacker first sends the payload to the web application, then the
application saves the payload (e.g., in a database or server-side text
files), and finally, the application unintentionally executes the payload
for every victim visiting its web pages.

OSVersionArchitecturePackageVersionFilename
ubuntu20.04noarchzabbix< anyUNKNOWN
ubuntu22.04noarchzabbix< anyUNKNOWN
ubuntu23.10noarchzabbix< anyUNKNOWN

5.4 Medium

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

REQUIRED

Scope

CHANGED

Confidentiality Impact

LOW

Integrity Impact

LOW

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N

0.0005 Low

EPSS

Percentile

17.9%