Survey Maker prior to 3.6.4 contains a stored cross-site scripting vulnerability. If this vulnerability is exploited, an arbitrary script may be executed on the web browser of the user who is logging in to the website using the product with the administrative privilege.
Metrics
Affected Vendors & Products
References
History
Fri, 10 Oct 2025 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Ays-pro
Ays-pro survey Maker |
|
| CPEs | cpe:2.3:a:ays-pro:survey_maker:*:*:*:*:*:wordpress:*:* | |
| Vendors & Products |
Ays-pro
Ays-pro survey Maker |
Wed, 06 Nov 2024 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-79 | |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: jpcert
Published: 2024-04-03T07:09:42.923Z
Updated: 2024-11-06T14:40:54.619Z
Reserved: 2023-08-24T08:08:44.050Z
Link: CVE-2023-34423
Updated: 2024-08-02T16:10:07.128Z
Status : Analyzed
Published: 2024-04-03T08:15:48.990
Modified: 2025-10-10T17:18:42.287
Link: CVE-2023-34423
No data.
ReportizFlow