CVE-2023-6419
CVSS 3.1 Score 6.1 of 10 (medium)
Details
Published Nov 30, 2023
Updated: Dec 2, 2023
CWE ID 79
Summary
CVE-2023-6419 is a newly disclosed vulnerability affecting Voovi Social Networking Script version 1.0. This issue permits a Cross-Site Scripting (XSS) attack through the editprofile.php page and multiple parameters. Exploitation of this XSS vulnerability enables a remote attacker to inject malicious JavaScript code. Once executed, the attacker can gain partial control over the authenticated user's browser session.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share