CVE-2023-30454 | ebankIT up to 6 Document Object Transactions.aspx eval cross site scripting (ID 172063 / EUVD-2023-34871)
A vulnerability was found in ebankIT up to 6 and classified as problematic. The affected element is the function eval of the file /Security/Transactions/Transactions.aspx of the component Document Object Handler. Executing manipulation of the argument ctl100$ctl00MainContent$TransactionMainContent$accControl$hdnAccountsArray can lead to cross site scripting.
This vulnerability appears as CVE-2023-30454. The attack may be performed from remote. There is no available exploit.
It is suggested to upgrade the affected component.