
Proof-of-concept exploit for CVE-2023-5024, a reflected XSS vulnerability in PLANNO <=23.04.04 via the Comment Handler component. Includes two attack vectors for remote exploitation.
A vulnerability has been discovered in Planno version <= 23.04.04, and it has been categorized as problematic. This vulnerability affects an undisclosed portion of the Comment Handler component's code and can lead to cross-site scripting (XSS) attacks. It has been assigned the name CVE-2023-5024. Importantly, this type of attack can be initiated remotely, and furthermore, an exploit is known to exist to exploit this vulnerability.
"><script>alert(1);</script>)"><script>alert(1);</script>) and then click on "Enregistrer."You can learn more about it at the following links: