Medium severity6.1NVD Advisory· Published Feb 9, 2023· Updated Jun 17, 2026
CVE-2023-24322
CVE-2023-24322
Description
A reflected cross-site scripting (XSS) vulnerability in the FileDialog.aspx component of mojoPortal v2.7.0.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the ed and tbi parameters.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:mojoportal:mojoportal:2.7.0.0:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:mojoportal:mojoportal:2.7.0.0:*:*:*:*:*:*:*
- (no CPE)range: =2.7.0.0
- mojoPortal/mojoPortaldescription
Patches
Vulnerability mechanics
References
2- github.com/blakduk/Advisories/blob/main/Mojoportal/README.mdnvdExploitThird Party Advisory
- www.mojoportal.comnvdProduct
News mentions
0No linked articles in our index yet.