A reflected XSS vulnerability has been found in YzmCMS 7.1. The vulnerability exists in yzmphp/core/class/application.class.php: when logged-in users access a malicious link, their cookies can be captured by an attacker.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://github.com/yzmcms/yzmcms/issues/68 |
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-02T03:07:46.849Z
Reserved:
Link: CVE-2024-35110
Vulnrichment
Updated: 2024-08-02T03:07:46.849Z
NVD
Status : Awaiting Analysis
Published: 2024-05-17T08:15:06.073
Modified: 2024-07-03T02:01:24.987
Link: CVE-2024-35110
Redhat
No data.