CVE-2023-4118

CVSS 3.0 Score 8.8 of 10 (high)

Details

Published Aug 3, 2023
Updated: May 17, 2024
CWE ID 306

Summary

CVE-2023-4118 is a newly disclosed vulnerability affecting Cute Http File Server 2.0. The issue lies within the Search component and can result in cross-site scripting (XSS) attacks. An attacker can initiate these attacks remotely, making the vulnerability a significant security concern. The exploit for this vulnerability has been made public, increasing the risk of malicious exploitation. This vulnerability has been assigned the identifier VDB-235965. Unfortunately, the vendor has not responded to disclosure efforts, leaving users potentially unprotected against this issue.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share