CVE-2023-3563

A vulnerability was found in GZ Scripts GZ E Learning Platform 1.8 and classified as problematic. This issue affects some unknown processing of the component URL Parameter Handler. The manipulation leads to cross site scripting. The attack may be initiated remotely. The identifier VDB-233357 was assigned to this vulnerability.
References
Link Resource
https://vuldb.com/?ctiid.233357 Permissions Required Third Party Advisory
https://vuldb.com/?id.233357 Third Party Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:gzscripts:gz_e_learning_platform:1.8:*:*:*:*:*:*:*

History

14 Jul 2023, 23:53

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 6.1
CPE cpe:2.3:a:gzscripts:gz_e_learning_platform:1.8:*:*:*:*:*:*:*
References (MISC) https://vuldb.com/?ctiid.233357 - (MISC) https://vuldb.com/?ctiid.233357 - Permissions Required, Third Party Advisory
References (MISC) https://vuldb.com/?id.233357 - (MISC) https://vuldb.com/?id.233357 - Third Party Advisory

10 Jul 2023, 16:27

Type Values Removed Values Added
New CVE

Information

Published : 2023-07-10 16:15

Updated : 2024-05-17 02:27


NVD link : CVE-2023-3563

Mitre link : CVE-2023-3563

CVE.ORG link : CVE-2023-3563


JSON object : View

Products Affected

gzscripts

  • gz_e_learning_platform
CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')