{ "id": "CVE-2023-44763", "sourceIdentifier": "cve@mitre.org", "published": "2023-10-10T12:15:09.870", "lastModified": "2023-10-10T12:16:32.703", "vulnStatus": "Awaiting Analysis", "descriptions": [ { "lang": "en", "value": "Concrete CMS v9.2.1 is affected by Arbitrary File Upload vulnerability via the Thumbnail\" file upload, which allows Cross-Site Scripting (XSS)." } ], "metrics": {}, "references": [ { "url": "https://github.com/sromanhu/ConcreteCMS-Arbitrary-file-upload-Thumbnail", "source": "cve@mitre.org" } ] }