CVE-2023-40461

CVSS V2 None CVSS V3 None
Description
The ACEManager component of ALEOS 4.16 and earlier allows an authenticated user with Administrator privileges to access a file upload field which does not fully validate the file name, creating a Stored Cross-Site Scripting condition.
Overview
  • CVE ID
  • CVE-2023-40461
  • Assigner
  • SWI
  • Vulnerability Status
  • PUBLISHED
  • Published Version
  • 2023-12-04T22:52:13.650Z
  • Last Modified Date
  • 2023-12-04T22:52:13.650Z
History
Created Old Value New Value Data Type Notes
2024-06-25 02:37:00 Added to TrackCVE