CVE-2023-36223
EUVD-2023-4020003.07.2023, 21:15
Cross Site Scripting vulnerability in mlogclub bbs-go v. 3.5.5. and before allows a remote attacker to execute arbitrary code via a crafted payload to the announcements parameter in the settings function.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| bbs-go | bbs-go | 𝑥 ≤ 3.5.5 |
𝑥
= Vulnerable software versions