CVE-2023-24369
17.02.2023, 17:15
A cross-site scripting (XSS) vulnerability in UJCMS v4.1.3 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into the URL parameter under the Add New Articles function.
Vendor | Product | Version |
---|---|---|
ujcms | ujcms | 4.1.3 ≤ 𝑥 < 5.5.1 |
𝑥
= Vulnerable software versions