CVE-2023-29847
14.04.2023, 14:15
AeroCMS v0.0.1 was discovered to contain multiple stored cross-site scripting (XSS) vulnerabilities via the comment_author and comment_content parameters at /post.php. These vulnerabilities allow attackers to execute arbitrary web scripts or HTML via a crafted payload.
Vendor | Product | Version |
---|---|---|
aerocms_project | aerocms | 0.0.1 |
𝑥
= Vulnerable software versions