Description
A flaw was found in Wildfly in versions before 23.0.2.Final while creating a new role in domain mode via the admin console, it is possible to add a payload in the name field, leading to XSS. This affects Confidentiality and Integrity.
Remediation
References
Related Vulnerabilities
phpMyFAQ Improper Privilege Management Vulnerability (CVE-2023-1762)
PHP Integer Overflow or Wraparound Vulnerability (CVE-2016-5096)
WebLogic CVE-2017-10148 Vulnerability (CVE-2017-10148)
Liferay Portal CVE-2011-1571 Vulnerability (CVE-2011-1571)
OpenSSL NULL Pointer Dereference Vulnerability (CVE-2016-7052)