Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-44138 | A vulnerability was found in RocketSoft Rocket LMS 1.7. It has been declared as problematic. This vulnerability affects unknown code of the file /contact/store of the component Contact Form. The manipulation of the argument name/subject/message leads to cross site scripting. The attack can be initiated remotely. The identifier of this vulnerability is VDB-232756. |
| Link | Providers |
|---|---|
| https://vuldb.com/?ctiid.232756 |
|
| https://vuldb.com/?id.232756 |
|
No history.
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2024-08-02T06:55:03.558Z
Reserved: 2023-06-30T06:41:27.203Z
Link: CVE-2023-3477
No data.
Status : Modified
Published: 2023-06-30T08:15:21.417
Modified: 2026-06-17T06:14:10.927
Link: CVE-2023-3477
No data.
OpenCVE Enrichment
No data.
-
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
EUVD