Cross-Site Scripting Vulnerability in a-blog cms by a-blog cms
CVE-2024-23782
5.4MEDIUM
What is CVE-2024-23782?
A cross-site scripting vulnerability has been identified in multiple versions of a-blog cms, which allows attackers with contributor privileges or higher to execute arbitrary scripts in the web browsers of end users. This vulnerability impacts a range of product versions, necessitating immediate updates to mitigate risks associated with potential exploitation.
Affected Version(s)
a-blog cms Ver.2.9.0 and earlier
a-blog cms Ver.2.10.x series prior to Ver.2.10.50
a-blog cms Ver.2.11.x series prior to Ver.2.11.58
