Cross Site Scripting Vulnerability in Grocy Software by Grocy
CVE-2023-48200
5.4MEDIUM
Key Information:
- Vendor
Grocy Project
- Status
- Vendor
- CVE Published:
- 15 November 2023
Badges
๐พ Exploit Exists
What is CVE-2023-48200?
A Cross Site Scripting vulnerability in Grocy version 4.0.3 allows a local attacker to execute arbitrary code. This vulnerability can be exploited through the equipment description component, leading to unauthorized access to sensitive information within the application.
