Fiche vulnérabilité
CVE-2024-10479 : faille moyenne pb-cms project pb-cms (CVSS 5.4)
Description
A vulnerability, which was classified as problematic, was found in LinZhaoguan pb-cms up to 2.0.1. Affected is an unknown function of the file /admin#themes of the component Theme Management Module. The manipulation leads to cross site scripting. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
En bref
- Sévérité
- Moyenne (CVSS 5.4)
- Vecteur CVSS
- CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
- Exploitation active
- Non signalée par la CISA
- Publication
- 29 oct. 2024
- Dernière mise à jour
- 17 juin 2026
Produits concernés
- pb-cms project pb-cms