CVE-2024-48233

mipjz 5.0.5 is vulnerable to Cross Site Scripting (XSS) in \app\setting\controller\ApiAdminSetting.php via the ICP parameter.
References
Link Resource
https://github.com/sansanyun/mipjz/issues/16 Exploit Issue Tracking
Configurations

Configuration 1 (hide)

cpe:2.3:a:mipjz_project:mipjz:5.0.5:*:*:*:*:*:*:*

History

07 Jul 2025, 17:33

Type Values Removed Values Added
First Time Mipjz Project mipjz
Mipjz Project
References () https://github.com/sansanyun/mipjz/issues/16 - () https://github.com/sansanyun/mipjz/issues/16 - Exploit, Issue Tracking
CPE cpe:2.3:a:mipjz_project:mipjz:5.0.5:*:*:*:*:*:*:*

30 Oct 2024, 19:35

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 4.8
CWE CWE-79

28 Oct 2024, 13:58

Type Values Removed Values Added
Summary
  • (es) mipjz 5.0.5 es vulnerable a Cross Site Scripting (XSS) en \app\setting\controller\ApiAdminSetting.php a través del parámetro ICP.

25 Oct 2024, 21:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-10-25 21:15

Updated : 2025-07-07 17:33


NVD link : CVE-2024-48233

Mitre link : CVE-2024-48233

CVE.ORG link : CVE-2024-48233


JSON object : View

Products Affected

mipjz_project

  • mipjz
CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')