Nopcommerce 4.70.1 is vulnerable to Cross Site Scripting (XSS) via the combined "AddProductReview.Title" and "AddProductReview.ReviewText" parameter(s) (Reviews) when creating a new review.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2024-07-09T00:00:00
Updated: 2024-08-02T04:19:20.508Z
Reserved: 2024-06-21T00:00:00
Link: CVE-2024-38963
Vulnrichment
Updated: 2024-08-02T04:19:20.508Z
NVD
Status : Awaiting Analysis
Published: 2024-07-09T22:15:02.560
Modified: 2024-08-01T13:55:10.347
Link: CVE-2024-38963
Redhat
No data.