CVE-2023-50901

CVSS 3.1 Score 7.1 of 10 (high)

Details

Published Dec 29, 2023
Updated: Jan 5, 2024
CWE ID 79

Summary

CVE-2023-50901 is a vulnerability classified as "Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')" in the HasThemes HT Mega – Absolute Addons For Elementor plugin. This vulnerability allows for Reflected XSS attacks. The affected versions of the plugin range from n/a through 2.3.8. The vulnerability has a base severity rating of HIGH with a base score of 7.1 according to the Common Vulnerability Scoring System (CVSS) version 3.1. It requires user interaction and has a low integrity and confidentiality impact. The vulnerability can be exploited over a network and does not require any privileges. A total of 76 hits have been recorded for this vulnerability so far.

Explore Beyond the CVE Basics with Recorded Future's Vulnerability Intelligence

Note: This is just a basic overview providing quick insights into CVE-2023-50901 information. Gain full access to comprehensive CVE data, risk scores, prioritization, and mitigation data through Recorded Future's Vulnerability Intelligence:
  • Prioritize with Risk-Based Scoring
  • Explore the Extensive Vulnerability Database
  • Receive Early Alerts on Emerging CVEs
  • Focus on Critical Exploitable Vulnerabilities
  • Streamline Remediation with Integration Options