Логотип exploitDog
bind:CVE-2024-55342
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-55342

Количество 2

Количество 2

nvd логотип

CVE-2024-55342

около 1 года назад

A file upload functionality in Piranha CMS 11.1 allows authenticated remote attackers to upload a crafted PDF file to /manager/media. This PDF can contain malicious JavaScript code, which is executed when a victim user opens or interacts with the PDF in their web browser, leading to a XSS vulnerability.

CVSS3: 4.7
EPSS: Низкий
github логотип

GHSA-cmwp-442x-3rcv

около 1 года назад

Piranha CMS Cross-site Scripting vulnerability

CVSS3: 4.7
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-55342

A file upload functionality in Piranha CMS 11.1 allows authenticated remote attackers to upload a crafted PDF file to /manager/media. This PDF can contain malicious JavaScript code, which is executed when a victim user opens or interacts with the PDF in their web browser, leading to a XSS vulnerability.

CVSS3: 4.7
0%
Низкий
около 1 года назад
github логотип
GHSA-cmwp-442x-3rcv

Piranha CMS Cross-site Scripting vulnerability

CVSS3: 4.7
0%
Низкий
около 1 года назад

Уязвимостей на страницу