SiAdmin 1.1 Vulnerability: XSS via /show.php Query Parameter
CVE-2024-4993
6.3MEDIUM
What is CVE-2024-4993?
Vulnerability in SiAdmin 1.1 that allows XSS via the /show.php query parameter. This vulnerability could allow a remote attacker to send a specially crafted URL to an authenticated user and thereby steal their cookie session credentials.
Affected Version(s)
SiAdmin 1.1