CVE-2023-2191
LOW3.5EPSS 0.24%AzuraCast/AzuraCast vulnerable to cross-site scripting
描述
AzuraCast/AzuraCast prior to version 0.18.0 is vulnerable to stored cross-site scripting. An issue was identified where a user who already had an AzuraCast account could update their display name to inject malicious JavaScript into the header menu of the site. In a majority of cases, this menu is only visible to the current logged-in user (pages like the `Administer Users` page are unaffected by this vulnerability), but if a higher-privileged administrator uses the `Log In As` feature to masquerade as a user, then the JavaScript injection could exfiltrate certain data. Anonymous members of the public cannot exploit this vulnerability in an AzuraCast installation, so it is primarily of concern for multi-tenant installations (i.e. resellers).
受影響套件(1)
- Packagist/azuracast/azuracastfrom 0, < 0.18.0
CVSS 分數
| 來源 | 版本 | 嚴重程度 | 向量 |
|---|---|---|---|
| osv | CVSS 3.1 | LOW3.5 | CVSS:3.0/AV:N/AC:L/PR:H/UI:R/S:U/C:L/I:L/A:N |
參考連結(5)
- ADVISORYhttps://nvd.nist.gov/vuln/detail/CVE-2023-2191
- PATCHhttps://github.com/AzuraCast/AzuraCast
- WEBhttps://github.com/AzuraCast/AzuraCast/blob/main/CHANGELOG.md#azuracast-0180-apr-19-2023
- WEBhttps://github.com/azuracast/azuracast/commit/24276cb4166b2057de73569ec33046a80a8bb437
- WEBhttps://huntr.dev/bounties/0814f5f9-8b58-40e5-b08c-7c488947cf31