Description
A vulnerability was found in RocketSoft Rocket LMS 1.7. It has been declared as problematic. This vulnerability affects unknown code of the file /contact/store of the component Contact Form. The manipulation of the argument name/subject/message leads to cross site scripting. The attack can be initiated remotely. The identifier of this vulnerability is VDB-232756.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-44138 | A vulnerability was found in RocketSoft Rocket LMS 1.7. It has been declared as problematic. This vulnerability affects unknown code of the file /contact/store of the component Contact Form. The manipulation of the argument name/subject/message leads to cross site scripting. The attack can be initiated remotely. The identifier of this vulnerability is VDB-232756. |
References
| Link | Providers |
|---|---|
| https://vuldb.com/?ctiid.232756 |
|
| https://vuldb.com/?id.232756 |
|
History
No history.
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2024-08-02T06:55:03.558Z
Reserved: 2023-06-30T06:41:27.203Z
Link: CVE-2023-3477
No data.
Status : Modified
Published: 2023-06-30T08:15:21.417
Modified: 2024-11-21T08:17:21.297
Link: CVE-2023-3477
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD