CVE-2023-4771
MEDIUMCKEditor < 4.15.1 - Cross-Site Scripting via /ckeditor/samples/old/ajax.html
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2023-4771. PoCs published by sahar042.
AI-analyzed exploit summary This repository provides a detailed technical writeup for CVE-2023-4771, an XSS vulnerability in CKEditor 4's AJAX sample. It includes step-by-step exploitation instructions, a payload example, and references to the vulnerable code and patch.
Description
A Cross-Site scripting vulnerability has been found in CKSource CKEditor affecting versions 4.15.1 and earlier. An attacker could send malicious javascript code through the /ckeditor/samples/old/ajax.html file and retrieve an authorized user's information.
Exploits (1)
This repository provides a detailed technical writeup for CVE-2023-4771, an XSS vulnerability in CKEditor 4's AJAX sample. It includes step-by-step exploitation instructions, a payload example, and references to the vulnerable code and patch.
References (1)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N