CVE-2023-5699

CVSS 3.1 Score 6.1 of 10 (medium)

Details

Published Oct 23, 2023
Updated: May 17, 2024
CWE ID 79

Summary

CVE-2023-5699 is a newly identified vulnerability in the CodeAstro Internet Banking System 1.0. This issue is classified as problematic and involves the processing of the file pages_view_client.php. An attacker can exploit this vulnerability by manipulating the argument acc_name with input that includes malicious code, leading to cross-site scripting (XSS). The exploit can be initiated remotely, making it a significant security risk. The vulnerability has been disclosed to the public and an identifier, VDB-243137, has been assigned to it. This XSS vulnerability may be used by attackers to gain unauthorized access or steal sensitive information from affected systems.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share