CVE-2023-43878

CVSS 3.1 Score 5.4 of 10 (medium)

Details

Published Sep 28, 2023
Updated: Sep 29, 2023
CWE ID 79

Summary

CVE-2023-43878 is a newly identified vulnerability affecting Rite CMS 3.0. This issue comprises multiple Cross-Site Scripting (XSS) vulnerabilities, which enable attackers to inject malicious code into the Main Menu Items in the Administration Menu. Successful exploitation could lead to unauthorized access, data theft, or website defacement. Users are strongly advised to update their Rite CMS installation to the latest version as soon as possible to mitigate this risk. Attackers can leverage these XSS vulnerabilities to execute arbitrary code on unsuspecting users' browsers, posing a significant threat to data confidentiality and integrity.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share