CVE-2023-44771
CVSS 3.1 Score 5.4 of 10 (medium)
Details
Published Oct 6, 2023
CWE ID 79
Summary
CVE-2023-44771 is a Cross-Site Scripting (XSS) vulnerability affecting Zenario CMS version 9.4.59197. An attacker can exploit this weakness by injecting malicious code into a Page Layout. Successful exploitation may allow the attacker to steal sensitive user data or gain unauthorized access to affected systems. Local attackers can take advantage of this issue, making it a potential threat to organizations using the vulnerable Zenario CMS instance. Users are advised to update their systems to the latest, secure version as soon as possible to mitigate the risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Tribal Systems Zenario
Affected Vendors
- Tribal Systems