CVE-2024-42902
03.09.2024, 18:15
An issue in the js_localize.php function of LimeSurvey v6.6.2 and before allows attackers to execute arbitrary code via injecting a crafted payload into the lng parameter of the js_localize.php function
Vendor | Product | Version |
---|---|---|
limesurvey | limesurvey | 𝑥 ≤ 6.6.2 |
𝑥
= Vulnerable software versions