An unauthenticated remote attacker could provide a malicious link and trick an unsuspecting user into clicking on it. If clicked, the attacker could execute the malicious JavaScript (JS) payload in the target’s security context.
History

Fri, 17 Jan 2025 18:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: icscert

Published:

Updated: 2025-01-17T17:17:52.267Z

Reserved: 2023-03-20T14:52:02.998Z

Link: CVE-2023-28650

cve-icon Vulnrichment

Updated: 2024-08-02T13:43:23.694Z

cve-icon NVD

Status : Modified

Published: 2023-03-27T20:15:09.633

Modified: 2025-01-17T18:15:21.340

Link: CVE-2023-28650

cve-icon Redhat

No data.