Medium severity6.1NVD Advisory· Published Oct 4, 2023· Updated Jun 17, 2026
CVE-2023-4492
CVE-2023-4492
Description
Vulnerability in Easy Address Book Web Server 1.6 version, affecting the parameters (firstname, homephone, lastname, middlename, workaddress, workcity, workcountry, workphone, workstate and workzip) of the /addrbook.ghp file, allowing an attacker to inject a JavaScript payload specially designed to run when the application is loaded
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- Range: =1.6
- Range: 1.6
Patches
Vulnerability mechanics
References
1- www.incibe.es/en/incibe-cert/notices/aviso/multiple-vulnerabilities-efs-software-productsnvdThird Party Advisory
News mentions
0No linked articles in our index yet.