CVE-2024-42787
26.08.2024, 15:15
A Stored Cross Site Scripting (XSS) vulnerability was found in "/music/ajax.php?action=save_playlist" in Kashipara Music Management System v1.0. This vulnerability allows remote attackers to execute arbitrary code via "title" & "description" parameter fields.
Vendor | Product | Version |
---|---|---|
lopalopa | music_management_system | 1.0 |
𝑥
= Vulnerable software versions