CVE-2023-48858

A Cross-site scripting (XSS) vulnerability in login page php code in Armex ABO.CMS 5.9 allows remote attackers to inject arbitrary web script or HTML via the login.php? URL part.
References
Link Resource
https://abocms.ru/about/versions/version59/ Release Notes
https://github.com/Shumerez/CVE-2023-48858 Exploit Third Party Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:abocms:abo.cms:5.9:*:*:*:*:*:*:*

History

No history.

Information

Published : 2024-01-17 20:15

Updated : 2024-01-24 20:16


NVD link : CVE-2023-48858

Mitre link : CVE-2023-48858

CVE.ORG link : CVE-2023-48858


JSON object : View

Products Affected

abocms

  • abo.cms
CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')