A Cross Site Scripting vulnerability in CSZ CMS v.1.3.0 allows an attacker to execute arbitrary code via a crafted script to the Site Name fields of the Site Settings component.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://github.com/sms2056/cms/blob/main/3.md |
|
History
Thu, 15 May 2025 21:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Cszcms
Cszcms csz Cms |
|
| CPEs | cpe:2.3:a:cszcms:csz_cms:1.3.0:*:*:*:*:*:*:* | |
| Vendors & Products |
Cszcms
Cszcms csz Cms |
Thu, 29 Aug 2024 21:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-79 | |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-29T14:12:47.975Z
Reserved: 2024-02-26T00:00:00
Link: CVE-2024-27734
Updated: 2024-08-02T00:34:52.545Z
Status : Analyzed
Published: 2024-03-01T17:15:07.670
Modified: 2025-05-15T21:09:45.713
Link: CVE-2024-27734
No data.
OpenCVE Enrichment
No data.
Weaknesses