CVE-2024-12503 - CERT CVE
ID CVE-2024-12503
Sažetak A vulnerability classified as problematic was found in ClassCMS 4.8. Affected by this vulnerability is an unknown functionality of the file /index.php/admin of the component Model Management Page. The manipulation of the argument URL leads to cross site scripting. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.
Reference
CVSS
Base: 3.3
Impact: 2.9
Exploitability:6.4
Pristup
VektorSloženostAutentikacija
NETWORK LOW MULTIPLE
Impact
PovjerljivostCjelovitostDostupnost
NONE PARTIAL NONE
CVSS vektor AV:N/AC:L/Au:M/C:N/I:P/A:N
Zadnje važnije ažuriranje 13-12-2024 - 17:13
Objavljeno 12-12-2024 - 02:15