CVE-2023-7056

CVSS 3.1 Score 5.4 of 10 (medium)

Details

Published Dec 22, 2023
Updated: May 17, 2024
CWE ID 79

Summary

CVE-2023-7056 is a newly disclosed vulnerability affecting the Faculty Management System 1.0. An issue was discovered in the /admin/pages/subjects.php file, which allows for cross-site scripting (XSS) attacks. The vulnerability can be triggered by manipulating the Description/Units argument. This attack can be executed remotely, and the exploit has been made public, increasing the risk of exploitation. This vulnerability is identified as VDB-248743.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share