CVE-2023-44770
CVSS 3.1 Score 5.4 of 10 (medium)
Details
Published Oct 6, 2023
CWE ID 79
Summary
CVE-2023-44770 is a newly discovered Cross-Site Scripting (XSS) vulnerability in Zenario CMS version 9.4.59197. This issue allows an attacker to inject and execute arbitrary code through a crafted script in the Organizer - Spare alias. Successful exploitation could result in unauthorized access, data theft, or website defacement. Users are strongly advised to update their Zenario CMS installations to a patched version to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share
Affected Products
- Tribal Systems Zenario
Affected Vendors
- Tribal Systems