CVE-2024-23782

CVSS 3.1 Score 5.4 of 10 (medium)

Details

Published Jan 28, 2024
Updated: Feb 2, 2024
CWE ID 79

Summary

CVE-2024-23782 is a cross-site scripting vulnerability that affects the a-blog cms Ver.3.1.x series versions prior to Ver.3.1.7, Ver.3.0.x series versions prior to Ver.3.0.29, Ver.2.11.x series versions prior to Ver.2.11.58, Ver.2.10.x series versions prior to Ver.2.10.50, and Ver.2.9.0 and earlier versions of the product (a-blog cms). This vulnerability allows a user with contributor or higher privilege to execute arbitrary scripts on the web browser of users who access the website using the affected product versions.

Explore Beyond the CVE Basics with Recorded Future's Vulnerability Intelligence

Note: This is just a basic overview providing quick insights into CVE-2024-23782 information. Gain full access to comprehensive CVE data, risk scores, prioritization, and mitigation data through Recorded Future's Vulnerability Intelligence:
  • Prioritize with Risk-Based Scoring
  • Explore the Extensive Vulnerability Database
  • Receive Early Alerts on Emerging CVEs
  • Focus on Critical Exploitable Vulnerabilities
  • Streamline Remediation with Integration Options