VDB
GCVE-110-CLOUD-2023-0048
GCVE-110-CLOUD-2023-0048
Advisory Published
Azure Service Fabric Explorer (SFX) was affected by an XSS vulnerability that
could have allowed a malicious script to be reflected off a web application.
After a potential victim clicked on a crafted malicious URL, the attacker could
remotely toggle the ‘Cluster’ Event Type setting under the Events tab. This could
lead to unauthenticated remote code execution on a container hosted on a Service Fabric node.
Affected Products
| Vendor | Product | Versions | Platforms |
|---|---|---|---|
| Azure | Azure Service Fabric Explorer (SFX) | — | — |
| Azure | Cloud Services | — | — |
Aliases
Browse GCVE Records
74,237 records in the GCVE database · Updated July 21, 2026
No matching records found.
Explore Further
Investigate this vulnerability in the interactive console or download the raw GCVE record.