Survey Maker prior to 3.6.4 contains a stored cross-site scripting vulnerability. If this vulnerability is exploited, an arbitrary script may be executed on the web browser of the user who is logging in to the website using the product with the administrative privilege.
Metrics
Affected Vendors & Products
References
History
Fri, 10 Oct 2025 17:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Ays-pro
Ays-pro survey Maker |
|
CPEs | cpe:2.3:a:ays-pro:survey_maker:*:*:*:*:*:wordpress:*:* | |
Vendors & Products |
Ays-pro
Ays-pro survey Maker |
Wed, 06 Nov 2024 15:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-79 | |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: jpcert
Published:
Updated: 2024-11-06T14:40:54.619Z
Reserved: 2023-08-24T08:08:44.050Z
Link: CVE-2023-34423

Updated: 2024-08-02T16:10:07.128Z

Status : Analyzed
Published: 2024-04-03T08:15:48.990
Modified: 2025-10-10T17:18:42.287
Link: CVE-2023-34423

No data.

No data.