CVE-2024-30884 - CERT CVE
ID CVE-2024-30884
Sažetak Reflected Cross-Site Scripting (XSS) vulnerability in Discuz! version X3.4 20220811, allows remote attackers to execute arbitrary code and obtain sensitive information via crafted payload to the primarybegin parameter in the misc.php component.
Reference
CVSS
Base: 7.1
Impact: 3.7
Exploitability:2.8
Pristup
VektorSloženostAutentikacija
NETWORK LOW NONE
Impact
PovjerljivostCjelovitostDostupnost
LOW LOW LOW
CVSS vektor CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:L
Zadnje važnije ažuriranje 17-06-2025 - 20:54
Objavljeno 11-04-2024 - 05:15