CVE-2023-7143

CVSS 3.1 Score 4.8 of 10 (medium)

Details

Published Dec 29, 2023
Updated: May 17, 2024
CWE ID 79

Summary

CVE-2023-7143 is a newly disclosed vulnerability affecting the code-projects Client Details System 1.0. This issue, rated as problematic, lies in the /admin/regester.php file, where manipulation of the fname, lname, email, or contact arguments can lead to cross-site scripting (XSS). The attack can be executed remotely, making it a significant concern for security. The exploit has become publicly available, increasing the risk of potential attacks. VDB-249146 is the identifier assigned to this vulnerability.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share