CVE-2023-3541

CVSS 3.1 Score 6.1 of 10 (medium)

Details

Published Jul 7, 2023
Updated: May 17, 2024
CWE ID 79

Summary

CVE-2023-3541 is a newly discovered vulnerability in ThinuTech ThinuCMS 1.5. This issue lies within an unidentified feature of the file /author_posts.php, making it a potential target for exploitation. An attacker can leverage cross-site scripting by manipulating the 'author' argument with the input g6g12<script>alert(1)</script>o8sdm. This vulnerability allows remote attacks, increasing the threat level significantly. The Vulnerability Database has assigned the identifier VDB-233293 to this issue.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share