CVE-2024-12932
CVSS 2.0 Score 4 of 10 (medium)
Details
Published Dec 26, 2024
CWE ID 94
CWE ID 79
Summary
CVE-2024-12932 is a newly identified vulnerability affecting the Simple Admin Panel version 1.0. This issue poses a risk to an unspecified functionality within the file addSizeController.php. An attacker can exploit this vulnerability by manipulating the size argument, resulting in a cross-site scripting (XSS) attack. The threat actor can launch the attack remotely, making it crucial for users to apply patches or updates promptly to mitigate this security risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Vendors
- Code Projects