Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-29376


An issue was discovered in Progress Sitefinity 13.3 before 13.3.7647, 14.0 before 14.0.7736, 14.1 before 14.1.7826, 14.2 before 14.2.7930, and 14.3 before 14.3.8025. There is potential XSS by privileged users in Sitefinity to media libraries.


Published

2023-04-10T15:15:07.343

Last Modified

2025-02-11T16:15:38.160

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 5.4 (MEDIUM)

Weaknesses
  • Type: Primary
    CWE-79
  • Type: Secondary
    CWE-79

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application progress sitefinity < 13.3.7646 Yes
Application progress sitefinity < 14.0.7736 Yes
Application progress sitefinity < 14.1.7826 Yes
Application progress sitefinity < 14.2.7930 Yes
Application progress sitefinity < 14.3.8026 Yes

References