Cross Site Scripting vulnerability in Gibbon before v.27.0.01 and fixed in v.28.0.00 allows a remote attacker to obtain sensitive information via the email parameter found in /Gibbon/modules/User Admin/user_manage_editProcess.php.
Metrics
Affected Vendors & Products
References
History
Thu, 21 Nov 2024 20:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Gibbon
Gibbon core |
|
Weaknesses | CWE-79 | |
CPEs | cpe:2.3:a:gibbon:core:*:*:*:*:*:*:*:* | |
Vendors & Products |
Gibbon
Gibbon core |
|
Metrics |
cvssV3_1
|
Thu, 21 Nov 2024 18:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Cross Site Scripting vulnerability in Gibbon before v.27.0.01 and fixed in v.28.0.00 allows a remote attacker to obtain sensitive information via the email parameter found in /Gibbon/modules/User Admin/user_manage_editProcess.php. | |
References |
|
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2024-11-21T00:00:00
Updated: 2024-11-21T19:56:23.694Z
Reserved: 2024-10-28T00:00:00
Link: CVE-2024-51337
Vulnrichment
Updated: 2024-11-21T19:52:08.610Z
NVD
Status : Received
Published: 2024-11-21T19:15:11.523
Modified: 2024-11-21T20:15:43.673
Link: CVE-2024-51337
Redhat
No data.