← back
CVE-2024-11348

Reflected XSS in Eura7 CMSmanager

CVSS 5.3 MEDIUMEPSS 0.4%CWE-79
Eura7 CMSmanager in version 4.6 and below is vulnerable to Reflected XSS attacks through manipulation of return GET request parameter sent to a specific endpoint. The vulnerability has been fixed by a patche patch 17012022 addressing all affected versions in use.
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:N/VI:N/VA:N/SC:L/SI:L/SA:N
Affected products
Eura7 · CMSmanager

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →