Description
Vulnerability in SiAdmin 1.1 that allows XSS via the /show.php query parameter. This vulnerability could allow a remote attacker to send a specially crafted URL to an authenticated user and thereby steal their cookie session credentials.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-44543 | Vulnerability in SiAdmin 1.1 that allows XSS via the /show.php query parameter. This vulnerability could allow a remote attacker to send a specially crafted URL to an authenticated user and thereby steal their cookie session credentials. |
References
History
Fri, 10 Oct 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Ansanwan
Ansanwan siadmin |
|
| CPEs | cpe:2.3:a:ansanwan:siadmin:1.1:*:*:*:*:*:*:* | |
| Vendors & Products |
Ansanwan
Ansanwan siadmin |
Status: PUBLISHED
Assigner: INCIBE
Published:
Updated: 2024-08-01T20:55:10.414Z
Reserved: 2024-05-16T09:51:26.559Z
Link: CVE-2024-4993
Updated: 2024-08-01T20:55:10.414Z
Status : Analyzed
Published: 2024-05-16T12:15:15.290
Modified: 2025-10-10T20:01:55.270
Link: CVE-2024-4993
No data.
OpenCVE Enrichment
Updated: 2025-07-12T23:06:02Z
Weaknesses
EUVD