CVE-2024-48589
Severity CVSS v4.0:
Pending analysis
Type:
CWE-79
Cross-Site Scripting (XSS)
Publication date:
06/02/2025
Last modified:
11/02/2025
Description
Cross Site Scripting vulnerability in Gilnei Moraes phpABook v.0.9 allows a remote attacker to execute arbitrary code via the rol parameter in index.php
Impact
Base Score 3.x
6.30
Severity 3.x
MEDIUM