CVE-2023-44770

CVSS 3.1 Score 5.4 of 10 (medium)

Details

Published Oct 6, 2023
CWE ID 79

Summary

CVE-2023-44770 is a newly discovered Cross-Site Scripting (XSS) vulnerability in Zenario CMS version 9.4.59197. This issue allows an attacker to inject and execute arbitrary code through a crafted script in the Organizer - Spare alias. Successful exploitation could result in unauthorized access, data theft, or website defacement. Users are strongly advised to update their Zenario CMS installations to a patched version to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Tribal Systems Zenario

Affected Vendors

  • Tribal Systems