Unrestricted Upload of File with Dangerous Type, Improper Input Validation, Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in django CMS Association django Filer allows Input Data Manipulation, Stored XSS.This issue affects django Filer: from 3 before 3.3.
Metrics
Affected Vendors & Products
References
History
Wed, 20 Nov 2024 15:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Wed, 20 Nov 2024 14:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
References |
|
Wed, 20 Nov 2024 13:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
References |
|
Wed, 20 Nov 2024 12:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
References |
|
Wed, 20 Nov 2024 12:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Unrestricted Upload of File with Dangerous Type, Improper Input Validation, Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in django CMS Association django Filer allows Input Data Manipulation, Stored XSS.This issue affects django Filer: from 3 before 3.3. | |
Title | File Upload Bypass in django Filer | |
Weaknesses | CWE-20 CWE-434 CWE-80 |
|
References |
| |
Metrics |
cvssV3_1
|
MITRE
Status: PUBLISHED
Assigner: TR-CERT
Published: 2024-11-20T11:55:25.444Z
Updated: 2024-11-20T14:56:21.603Z
Reserved: 2024-11-19T12:27:55.880Z
Link: CVE-2024-11404
Vulnrichment
Updated: 2024-11-20T14:47:12.505Z
NVD
Status : Awaiting Analysis
Published: 2024-11-20T12:15:18.640
Modified: 2024-11-21T13:57:24.187
Link: CVE-2024-11404
Redhat
No data.