Medium severity4.8NVD Advisory· Published Aug 28, 2023· Updated Jun 17, 2026
CVE-2023-39578
CVE-2023-39578
Description
A stored cross-site scripting (XSS) vulnerability in the Create function of Zenario CMS v9.4 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Menu navigation text field.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- Zenario/Zenario CMSdescription
- cpe:2.3:a:tribalsystems:zenario:9.4:*:*:*:*:*:*:*
- Range: =9.4
Patches
Vulnerability mechanics
References
2- github.com/anh91/Zenario-xss/issues/1nvdExploitIssue TrackingVendor Advisory
- panda002.hashnode.dev/a-stored-cross-site-scripting-xss-vulnerability-in-the-create-the-function-of-zenario-cms-v94nvd
News mentions
0No linked articles in our index yet.