added reference

patch-1
Dhiyaneshwaran 2024-03-06 23:50:54 +05:30 committed by GitHub
parent 2ae02640f8
commit ec1c3bfd5c
No known key found for this signature in database
GPG Key ID: B5690EEEBB952194
1 changed files with 2 additions and 1 deletions

View File

@ -7,7 +7,8 @@ info:
description: |
A remote code execution (RCE) vulnerability in the xmlrpc.php endpoint of NodeBB Inc NodeBB forum software prior to v1.18.6 allows attackers to execute arbitrary code via crafted XML-RPC requests.
reference:
-
- https://github.com/jagat-singh-chaudhary/CVE/blob/main/CVE-2023-43187
- https://nvd.nist.gov/vuln/detail/CVE-2023-43187
classification:
cvss-metrics: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
cvss-score: 9.8