CVE-2024-24388

Severity CVSS v4.0:
Pending analysis
Type:
CWE-79 Cross-Site Scripting (XSS)
Publication date:
02/02/2024
Last modified:
05/06/2025

Description

Cross-site scripting (XSS) vulnerability in XunRuiCMS versions v4.6.2 and before, allows remote attackers to obtain sensitive information via crafted malicious requests to the background login.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:xunruicms:xunruicms:*:*:*:*:*:*:*:* 4.6.2 (including)