Security Advisory

CVE-2023-44765

5.4
MEDIUM

Vulnerability Description

A Cross Site Scripting (XSS) vulnerability in Concrete CMS versions 8.5.12 and below, and 9.0 through 9.2.1 allows an attacker to execute arbitrary code via a crafted script to Plural Handle of the Data Objects from System & Settings.
Published Date October 6, 2023
Official Source NIST NVD Advisory