CVE-2023-47513

Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) (CWE-80)

Published: Jun 4, 2024 / Updated: 5mo ago

010
CVSS 5.4EPSS 0.04%Medium
CVE info copied to clipboard

Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in ARI Soft ARI Stream Quiz allows Code Injection.This issue affects ARI Stream Quiz: from n/a through 1.3.2.

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:L

Timeline

First Article

Feedly found the first article mentioning CVE-2023-47513. See article

Nov 11, 2023 at 12:37 AM / vuldb.com
CVSS Estimate

Feedly estimated the CVSS score as MEDIUM

Jun 4, 2024 at 9:50 AM
CVE Assignment

NVD published the first details for CVE-2023-47513

Jun 4, 2024 at 10:15 AM
CVSS

A CVSS base score of 5.4 has been assigned.

Jun 4, 2024 at 10:20 AM / nvd
EPSS

EPSS Score was set to: 0.04% (Percentile: 8.9%)

Jun 11, 2024 at 6:17 PM
Static CVE Timeline Graph

Affected Systems

Ari-soft/ari_stream_quiz
+null more

Attack Patterns

CAPEC-18: XSS Targeting Non-Script Elements
+null more

News

NA - CVE-2023-47513 - Improper Neutralization of Script-Related HTML...
Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in ARI Soft ARI Stream Quiz allows Code Injection.This issue affects ARI Stream Quiz: from n/a through...
CVE-2023-47513
Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in ARI Soft ARI Stream Quiz allows Code Injection.This issue affects ARI Stream Quiz: from n/a through 1.3.2. CVE-2023-47513 originally published on CyberSecurityBoard
CVE-2023-47513 - Improper Neutralization of Script-Related HTML Tag
CVE ID : CVE-2023-47513 Published : June 4, 2024, 10:15 a.m. 16 minutes ago Description : Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in ARI Soft ARI Stream Quiz allows Code Injection.This issue affects ARI Stream Quiz: from n/a through 1.3.2. Severity: 5.4 MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2023-47513 WordPress ARI Stream Quiz – WordPress Quizzes Builder plugin <=1.3.2 - Content Injection vulnerability
Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in ARI Soft ARI Stream Quiz allows Code Injection.This issue affects ARI Stream Quiz: from n/a through...
CVE-2023-47513
Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in ARI Soft ARI Stream Quiz allows Code Injection.This issue affects ARI Stream Quiz: from n/a through 1.3.2.
See 2 more articles and social media posts

CVSS V3.1

Attack Vector:Network
Attack Complexity:Low
Privileges Required:Low
User Interaction:None
Scope:Unchanged
Confidentiality:None
Integrity:Low
Availability Impact:Low

Categories

Be the first to know about critical vulnerabilities

Collect, analyze, and share vulnerability reports faster using AI