CVE-2024-31609

Cross Site Scripting (XSS) vulnerability in BOSSCMS v3.10 allows attackers to run arbitrary code via the header code and footer code fields in code configuration.
Configurations

No configuration.

History

01 Aug 2024, 13:51

Type Values Removed Values Added
CWE CWE-79
Summary
  • (es) La vulnerabilidad de Cross Site Scripting (XSS) en BOSSCMS v3.10 permite a los atacantes ejecutar código arbitrario a través de los campos de código de encabezado y código de pie de página en la configuración del código.
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.1

25 Apr 2024, 22:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-04-25 22:15

Updated : 2024-08-01 13:51


NVD link : CVE-2024-31609

Mitre link : CVE-2024-31609

CVE.ORG link : CVE-2024-31609


JSON object : View

Products Affected

No product.

CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')