Blackcat CMS 1.4 contains a stored cross-site scripting vulnerability that allows authenticated users to inject malicious scripts into page content. Attackers can insert JavaScript payloads in the page modification interface that execute when other users view the compromised page.
Metrics
Affected Vendors & Products
References
History
Mon, 15 Dec 2025 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 15 Dec 2025 20:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Blackcat CMS 1.4 contains a stored cross-site scripting vulnerability that allows authenticated users to inject malicious scripts into page content. Attackers can insert JavaScript payloads in the page modification interface that execute when other users view the compromised page. | |
| Title | Blackcat CMS 1.4 Stored Cross-Site Scripting via Page Modification | |
| Weaknesses | CWE-79 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: VulnCheck
Published: 2025-12-15T20:28:24.133Z
Updated: 2025-12-15T21:46:18.111Z
Reserved: 2025-12-15T14:39:05.361Z
Link: CVE-2023-53891
Updated: 2025-12-15T21:37:18.296Z
Status : Received
Published: 2025-12-15T21:15:52.390
Modified: 2025-12-15T22:15:47.150
Link: CVE-2023-53891
No data.