2024-05-25 21:48:12 +02:00
|
|
|
### [CVE-2023-36121](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-36121)
|
|
|
|

|
|
|
|

|
|
|
|

|
|
|
|
|
|
|
|
### Description
|
|
|
|
|
|
|
|
Cross Site Scripting vulnerability in e107 v.2.3.2 allows a remote attacker to execute arbitrary code via the description function in the SEO project.
|
|
|
|
|
|
|
|
### POC
|
|
|
|
|
|
|
|
#### Reference
|
2024-06-07 17:53:02 +00:00
|
|
|
- https://github.com/Trinity-SYT-SECURITY/XSS_vuln_issue/blob/main/e107%20v2.3.2.md
|
2024-05-25 21:48:12 +02:00
|
|
|
- https://www.chtsecurity.com/news/0a4743a5-491e-4685-95ee-df8316ab5284
|
|
|
|
- https://www.exploit-db.com/exploits/51449
|
|
|
|
|
|
|
|
#### Github
|
|
|
|
No PoCs found on GitHub currently.
|
|
|
|
|