CVE-2024-4993

Vulnerability in SiAdmin 1.1 that allows XSS via the /show.php query parameter. This vulnerability could allow a remote attacker to send a specially crafted URL to an authenticated user and thereby steal their cookie session credentials.
Configurations

No configuration.

History

16 May 2024, 12:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-05-16 12:15

Updated : 2024-05-16 13:03


NVD link : CVE-2024-4993

Mitre link : CVE-2024-4993

CVE.ORG link : CVE-2024-4993


JSON object : View

Products Affected

No product.

CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')