Vulnerability CVE-2023-29983


Published: 2023-05-12

Description:
Cross Site Scripting vulnerability found in Maximilian Vogt cmaps v.8.0 allows a remote attacker to execute arbitrary code via the auditlog tab in the admin panel.

See advisories in our WLB2 database:
Topic
Author
Date
Low
CompanyMaps 8.0 Cross Site Scripting
Lucas Noki
03.05.2023

Type:

CWE-79

(Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting'))

 References:
https://packetstormsecurity.com/files/172075/CompanyMaps-8.0-Cross-Site-Scripting.html
https://www.exploit-db.com/exploits/51417
https://github.com/zPrototype/CVE-2023-29983
https://github.com/vogtmh/cmaps

Copyright 2024, cxsecurity.com

 

Back to Top