Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-33800 | A vulnerability was found in UCMS 1.6.0. It has been classified as problematic. This affects an unknown part of the file saddpost.php of the component Column Configuration. The manipulation of the argument strorder leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-227481 was assigned to this vulnerability. |
No history.
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2024-08-02T06:19:14.236Z
Reserved: 2023-04-26T05:25:56.826Z
Link: CVE-2023-2294
No data.
Status : Modified
Published: 2023-04-26T06:15:09.283
Modified: 2026-06-17T05:52:12.900
Link: CVE-2023-2294
No data.
OpenCVE Enrichment
No data.
-
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
EUVD