CVE-2023-27775

LiveAction LiveSP cross-site scripting | CVE-2023-27775

NAME__________LiveAction LiveSP cross-site scriptingPlatforms Affected:Risk Level:6.4Exploitability:HighConsequences:Cross-Site Scripting DESCRIPTION__________LiveAction LiveSPis vulnerable to cross-site scripting, caused by improper validation of user-supplied input by the /va/service/bach/topology/element endpoint. A remote authenticated attacker could exploit…