Cross-Site Scripting (XSS) vulnerability in Sunlight CMS 8.0.1 allows an authenticated low-privileged user to escalate privileges via a crafted SVG file in the File Manager component.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://mechaneus.github.io/CVE-2023-48202.html |
![]() ![]() |
History
Thu, 29 May 2025 16:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|

Status: PUBLISHED
Assigner: mitre
Published: 2024-01-27T00:00:00.000Z
Updated: 2025-05-29T15:11:39.808Z
Reserved: 2023-11-13T00:00:00.000Z
Link: CVE-2023-48202

Updated: 2024-08-02T21:23:39.237Z

Status : Modified
Published: 2024-01-27T06:15:47.967
Modified: 2025-05-29T16:15:30.247
Link: CVE-2023-48202

No data.