Vulnerability CVE-2023-34439


Published: 2023-12-06   Modified: 2023-12-14

Description:
Pleasanter 1.3.47.0 and earlier contains a stored cross-site scripting vulnerability. If this vulnerability is exploited, an arbitrary script may be executed on the user's web browser.

Type:

CWE-79

(Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting'))

Affected software
Pleasanter -> Pleasanter 

 References:
https://pleasanter.org/archives/vulnerability-update-202311
https://jvn.jp/en/jp/JVN96209256/

Copyright 2024, cxsecurity.com

 

Back to Top