Cross-Site Scripting Vulnerability in WonderCMS by WonderCMS
CVE-2024-32338

Currently unrated

Key Information:

Vendor

WonderCMS

Status
Vendor
CVE Published:
17 April 2024

What is CVE-2024-32338?

A cross-site scripting vulnerability present in the Settings section of WonderCMS allows attackers to inject malicious scripts through a specifically crafted payload in the PAGE TITLE parameter under the Current Page module. This flaw could enable unauthorized users to execute arbitrary web scripts or HTML, potentially compromising the integrity of a site and impacting end-users.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2024-32338 : Cross-Site Scripting Vulnerability in WonderCMS by WonderCMS