Lucene search

K
cvelistMitreCVELIST:CVE-2024-27625
HistoryMar 05, 2024 - 12:00 a.m.

CVE-2024-27625

2024-03-0500:00:00
mitre
www.cve.org
cms made simple
xss
file manager
inadequate input sanitization

9.3 High

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

9.2%

CMS Made Simple Version 2.2.19 is vulnerable to Cross Site Scripting (XSS). This vulnerability resides in the File Manager module of the admin panel. Specifically, the issue arises due to inadequate sanitization of user input in the β€œNew directory” field.

9.3 High

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

9.2%

Related for CVELIST:CVE-2024-27625