CVE-2023-24369
EUVD-2023-2842517.02.2023, 17:15
A cross-site scripting (XSS) vulnerability in UJCMS v4.1.3 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into the URL parameter under the Add New Articles function.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| ujcms | ujcms | 4.1.3 ≤ 𝑥 < 5.5.1 |
𝑥
= Vulnerable software versions