CVE-2023-37134
CVSS 3.1 Score 5.4 of 10 (medium)
Details
Published Jul 6, 2023
Updated: Jul 11, 2023
CWE ID 79
Summary
CVE-2023-37134 is a stored cross-site scripting (XSS) vulnerability affecting the Basic Information module of eyoucms version 1.6.3. This issue allows attackers to inject arbitrary web scripts or HTML code into the application by manipulating the input data. Successful exploitation could lead to unauthorized access to user information or a complete takeover of the affected system. It is critical that users upgrade to the latest version of eyoucms to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.