OnlineNewsSite v1.0 is vulnerable to Cross Site Scripting (XSS) which allows attackers to execute arbitrary code via the Title and summary fields in the /admin/post/edit/ endpoint.
Metrics
Affected Vendors & Products
References
History
Tue, 08 Oct 2024 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Online News Portal Project
Online News Portal Project online News Portal |
|
| Weaknesses | CWE-94 | |
| CPEs | cpe:2.3:a:online_news_portal_project:online_news_portal:-:*:*:*:*:*:*:* | |
| Vendors & Products |
Online News Portal Project
Online News Portal Project online News Portal |
|
| Metrics |
cvssV3_1
|
Mon, 07 Oct 2024 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | OnlineNewsSite v1.0 is vulnerable to Cross Site Scripting (XSS) which allows attackers to execute arbitrary code via the Title and summary fields in the /admin/post/edit/ endpoint. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published: 2024-10-07T00:00:00
Updated: 2024-10-08T18:49:00.637Z
Reserved: 2024-09-11T00:00:00
Link: CVE-2024-45933
Updated: 2024-10-08T18:44:33.456Z
Status : Awaiting Analysis
Published: 2024-10-07T15:15:08.793
Modified: 2024-10-08T19:35:19.013
Link: CVE-2024-45933
No data.