CVSS 3.1 Score 5.4 of 10 (medium)


Published Dec 15, 2023
Updated: Dec 19, 2023


CVE-2023-49175 is an Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability found in Kreativo Pro KP Fastest Tawk.To Chat version 1.1.1 and earlier. This vulnerability allows for Stored XSS attacks. The affected products include t24qIL, t24qIK, t24qIN, t24qIM, t24qIP, t24qIO, t24qIR, t24qIQ, t24qIT, t24qIS, t24qIV, and t24qIU. The risk score for this vulnerability is 25 with a base severity of MEDIUM. Remediation for this issue is not specified in the given information.

Explore Beyond the CVE Basics with Recorded Future's Vulnerability Intelligence

Note: This is just a basic overview providing quick insights into CVE-2023-49175 information. Gain full access to comprehensive CVE data, risk scores, prioritization, and mitigation data through Recorded Future's Vulnerability Intelligence:
  • Prioritize with Risk-Based Scoring
  • Explore the Extensive Vulnerability Database
  • Receive Early Alerts on Emerging CVEs
  • Focus on Critical Exploitable Vulnerabilities
  • Streamline Remediation with Integration Options