Cross-Site Scripting Vulnerabilities in Gibbon CMS
CVE-2022-23871
5.4MEDIUM
What is CVE-2022-23871?
Multiple cross-site scripting (XSS) vulnerabilities exist in the 'outcomes_addProcess.php' component of Gibbon CMS v22.0.01. These vulnerabilities enable attackers to execute arbitrary web scripts or inject HTML code by submitting specially crafted payloads through the 'name', 'category', and 'description' parameters, potentially compromising user data and website integrity.