CVE-2023-49770
CVSS 3.1 Score 4.8 of 10 (medium)
Details
Published Dec 14, 2023
Updated: Dec 19, 2023
CWE ID 79
Summary
CVE-2023-49770 is a Cross-site Scripting (XSS) vulnerability affecting the Peter Raschendorfer Smart External Link Click Monitor [Link Log] from versions n/a through 5.0.2. An attacker can exploit this improper neutralization of input during web page generation flaw to inject malicious scripts, potentially stealing user information or taking control of their sessions when they visit a specially crafted website. The vulnerability poses a significant risk to users interacting with the affected software.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.