CVE-2024-1018: PbootCMS cross site scripting
A vulnerability classified as problematic has been found in PbootCMS 3.2.5-20230421. Affected is an unknown function of the file /admin.php?p=/Area/index#tab=t2. The manipulation of the argument name leads to cross site scripting. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-252288.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-1018?
CVE-2024-1018 is classified as a problematic severity vulnerability.
How do I fix CVE-2024-1018?
To fix CVE-2024-1018, update PbootCMS to a version that has addressed this cross-site scripting issue.
What is the impact of CVE-2024-1018?
The impact of CVE-2024-1018 includes the potential for remote attackers to execute cross-site scripting attacks.
Which versions of PbootCMS are affected by CVE-2024-1018?
CVE-2024-1018 affects PbootCMS version 3.2.5 released on April 21, 2023.
Is CVE-2024-1018 a remote attack vector?
Yes, CVE-2024-1018 allows for remote exploitation through manipulation of the argument name.