CVE-2023-3832
CVSS 3.1 Score 7.5 of 10 (high)
Details
Published Jul 22, 2023
Updated: May 17, 2024
CWE ID 295
Summary
CVE-2023-3832 is a newly identified vulnerability affecting Bug Finder Wedding Wonders 1.0. This issue lies within an unknown function of the Ticket Handler component, specifically in the /user/ticket/create file. By manipulating the argument message, an attacker can execute cross-site scripting (XSS) attacks. These attacks can be launched remotely, posing a significant security risk. The vulnerability has been assigned the identifier VDB-235158, and efforts to contact the vendor for a response have been unsuccessful.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.