Логотип exploitDog
bind:CVE-2024-35240
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-35240

Количество 2

Количество 2

nvd логотип

CVE-2024-35240

больше 1 года назад

Umbraco Commerce is an open source dotnet ecommerce solution. In affected versions there exists a stored Cross-site scripting (XSS) issue which would enable attackers to inject malicious code into Print Functionality. This issue has been addressed in versions 12.1.4, and 10.0.5. Users are advised to upgrade. There are no known workarounds for this vulnerability.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-rpj9-xjwm-wr6w

больше 1 года назад

Umbraco Commerce vulnerable to Stored Cross-site Scripting on Print Functionality

CVSS3: 5.4
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-35240

Umbraco Commerce is an open source dotnet ecommerce solution. In affected versions there exists a stored Cross-site scripting (XSS) issue which would enable attackers to inject malicious code into Print Functionality. This issue has been addressed in versions 12.1.4, and 10.0.5. Users are advised to upgrade. There are no known workarounds for this vulnerability.

CVSS3: 5.4
0%
Низкий
больше 1 года назад
github логотип
GHSA-rpj9-xjwm-wr6w

Umbraco Commerce vulnerable to Stored Cross-site Scripting on Print Functionality

CVSS3: 5.4
0%
Низкий
больше 1 года назад

Уязвимостей на страницу