CVE-2024-47058
18.09.2024, 21:15
With access to edit a Mautic form, the attacker can add Cross-Site Scripting stored in the html filed. This could be used to steal sensitive information from the user's current session.
Vendor | Product | Version |
---|---|---|
acquia | mautic | 1.0.0 ≤ 𝑥 < 4.4.13 |
acquia | mautic | 5.0.0 ≤ 𝑥 < 5.1.1 |
𝑥
= Vulnerable software versions