CVE-2024-22497
EUVD-2024-040223.01.2024, 19:15
Cross Site Scripting (XSS) vulnerability in /admin/login password parameter in JFinalcms 5.0.0 allows attackers to run arbitrary code via crafted URL.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| jfinalcms_project | jfinalcms | 5.0.0 |
𝑥
= Vulnerable software versions