Skip to content

Instantly share code, notes, and snippets.

@Chiaki2333
Created November 26, 2023 14:08
CVE-2023-49028
[CVE ID]
CVE-2023-49028
[PRODUCT]
https://github.com/smpn1smg/absis
[VERSION]
smpn1smg/absis - <=2017-10-19
[PROBLEM TYPE]
Cross Site Scripting (XSS)
[DESCRIPTION]
Cross Site Scripting vulnerability in smpn1smg absis v.2017-10-19 and before allows a remote attacker to execute arbitrary code via the user parameter in the lock/lock.php file.
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment