VDB

GCVE-110-CLOUD-2023-0048

GCVE-110-CLOUD-2023-0048
Advisory Published
Vulnetix · Advisory published March 14, 2023
Azure Service Fabric Explorer (SFX) was affected by an XSS vulnerability that could have allowed a malicious script to be reflected off a web application. After a potential victim clicked on a crafted malicious URL, the attacker could remotely toggle the ‘Cluster’ Event Type setting under the Events tab. This could lead to unauthenticated remote code execution on a container hosted on a Service Fabric node.

Affected Products

VendorProductVersionsPlatforms
AzureAzure Service Fabric Explorer (SFX)
AzureCloud Services

References

Super FabriXss
advisory
advisory
advisory

Browse GCVE Records

74,237 records in the GCVE database · Updated July 21, 2026

No matching records found.

Explore Further

Investigate this vulnerability in the interactive console or download the raw GCVE record.

$ Console Community · 100/wk Open console ›