logo
Vulnerability feed
CONTRIBUTE

Vulnerability

warn

CVE-2023-28850

Reference to the description:

https://nvd.nist.gov/vuln/detail/CVE-2023-28850

Description:
Pimcore Perspective Editor provides an editor for Pimcore that allows users to add/remove/edit custom views and perspectives. This vulnerability has the potential to steal a user's cookie and gain unauthorized access to that user's account through the stolen cookie or redirect users to other malicious sites. Version 1.5.1 has a patch. As a workaround, one may apply the patch manually.
Last updated date:
04/12/2023
Type:
exploit
Confidence:
HIGH
Date of publishing:
04/12/2023
Reference url to background

https://github.com/pimcore/perspective-editor/security/advisories/GHSA-fq8q-55v3-2986

Type:
exploit
Confidence:
HIGH
Date of publishing:
04/12/2023
Vulnerability FeedContributorsAboutBlog

@inTheWild

©2024

Privacy Policy