Cross Site Scripting vulnerability in ED01-CMS v.1.0 allows an attacker to obtain sensitive information via the categories.php component.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Mon, 04 Nov 2024 15:15:00 +0000

Type Values Removed Values Added
First Time appeared Ed01-cms Project
Ed01-cms Project ed01-cms
CPEs cpe:2.3:a:ed01-cms_project:ed01-cms:1.0:*:*:*:*:*:*:*
Vendors & Products Ed01-cms Project
Ed01-cms Project ed01-cms
Metrics cvssV3_1

{'score': 4.7, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:N/I:L/A:N'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-11-04T14:47:50.710Z

Reserved: 2024-03-27T00:00:00

Link: CVE-2024-30890

cve-icon Vulnrichment

Updated: 2024-08-02T01:39:00.700Z

cve-icon NVD

Status : Analyzed

Published: 2024-04-25T17:15:49.797

Modified: 2025-04-30T16:45:27.600

Link: CVE-2024-30890

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.