CVE-2023-48858
CVSS 3.1 Score 6.1 of 10 (medium)
Details
Published Jan 17, 2024
Updated: Jan 24, 2024
CWE ID 79
Summary
CVE-2023-48858 is a newly discovered cross-site scripting (XSS) vulnerability. This issue affects the login page of Armex ABO.CMS 5.9. An attacker can exploit this flaw by injecting arbitrary web scripts or HTML code into the login.php URL. Successful exploitation could lead to unauthorized access to user accounts or sessions, posing a serious security risk. It is recommended that users upgrade to the latest version of Armex ABO.CMS to mitigate this vulnerability.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.