Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-40258 | An unauthenticated Cross-Site Scripting (XSS) vulnerability found in Webkul QloApps 1.6.0 allows an attacker to obtain a user's session cookie and then impersonate that user via GET configure parameter. |
Fri, 29 Nov 2024 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-11-29T19:30:45.853Z
Reserved: 2023-06-21T00:00:00.000Z
Link: CVE-2023-36288
Updated: 2024-08-02T16:45:56.384Z
Status : Modified
Published: 2023-06-23T15:15:10.323
Modified: 2024-11-21T08:09:29.813
Link: CVE-2023-36288
No data.
OpenCVE Enrichment
No data.
EUVD