mirror of
https://github.com/fkie-cad/nvd-json-data-feeds.git
synced 2025-06-07 05:28:59 +00:00
29 lines
1.2 KiB
JSON
29 lines
1.2 KiB
JSON
{
|
|
"id": "CVE-2023-45552",
|
|
"sourceIdentifier": "cve@mitre.org",
|
|
"published": "2024-04-03T17:15:47.330",
|
|
"lastModified": "2024-04-03T17:24:18.150",
|
|
"vulnStatus": "Awaiting Analysis",
|
|
"cveTags": [],
|
|
"descriptions": [
|
|
{
|
|
"lang": "en",
|
|
"value": "In VeridiumID before 3.5.0, a stored cross-site scripting (XSS) vulnerability has been discovered in the admin portal that allows an authenticated attacker to take over all accounts by sending malicious input via the self-service portal."
|
|
},
|
|
{
|
|
"lang": "es",
|
|
"value": "En VeridiumID anterior a 3.5.0, se descubri\u00f3 una vulnerabilidad de Cross Site Scripting (XSS) almacenado en el portal de administraci\u00f3n que permite a un atacante autenticado hacerse cargo de todas las cuentas enviando entradas maliciosas a trav\u00e9s del portal de autoservicio."
|
|
}
|
|
],
|
|
"metrics": {},
|
|
"references": [
|
|
{
|
|
"url": "https://docs.veridiumid.com/docs/v3.5/security-advisory#id-%28v3.52%29SecurityAdvisory-Acknowledgement",
|
|
"source": "cve@mitre.org"
|
|
},
|
|
{
|
|
"url": "https://veridiumid.com/veridium-id-authentication-platform/",
|
|
"source": "cve@mitre.org"
|
|
}
|
|
]
|
|
} |