A vulnerability, which was classified as problematic, was found in ThinkSAAS 3.7.0. Affected is an unknown function of the file app/system/action/anti.php of the component Admin Panel Security Center. The manipulation of the argument ip/email/phone leads to cross site scripting. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-272064.
History

Fri, 20 Sep 2024 23:15:00 +0000

Type Values Removed Values Added
First Time appeared Thinksaas
Thinksaas thinksaas
CPEs cpe:2.3:a:thinksaas:thinksaas:3.7.0:*:*:*:*:*:*:*
Vendors & Products Thinksaas
Thinksaas thinksaas

cve-icon MITRE

Status: PUBLISHED

Assigner: VulDB

Published: 2024-07-21T06:31:04.313Z

Updated: 2024-08-01T21:45:38.332Z

Reserved: 2024-07-20T09:45:51.556Z

Link: CVE-2024-6942

cve-icon Vulnrichment

Updated: 2024-08-01T21:45:38.332Z

cve-icon NVD

Status : Analyzed

Published: 2024-07-21T07:15:05.887

Modified: 2024-09-20T22:59:33.430

Link: CVE-2024-6942

cve-icon Redhat

No data.