CVE-2023-50826

CVSS 3.1 Score 5.9 of 10 (medium)

Details

Published Dec 21, 2023
Updated: Dec 27, 2023
CWE ID 79

Summary

CVE-2023-50826, also known as the 'Cross-site Scripting' vulnerability, affects the Menu Image, Icons made easy plugin from n/a through version 3.10. This vulnerability allows for Stored XSS attacks, making it possible for an attacker to inject malicious scripts into web pages generated by the affected plugin. The risk score is rated at 25, with base severity classified as MEDIUM. Remediation for this vulnerability requires updating the plugin to a version that has addressed the issue. The potential danger posed to organizations includes the possibility of unauthorized access, data theft, and manipulation of website content.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share