CVE-2024-11070: Sanluan PublicCMS Tag Type save cross site scripting
A vulnerability, which was classified as problematic, has been found in Sanluan PublicCMS 5.202406.d. This issue affects some unknown processing of the file /admin/cmsTagType/save of the component Tag Type Handler. The manipulation of the argument name leads to cross site scripting. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-11070?
CVE-2024-11070 has been classified as problematic, indicating a significant risk to affected systems.
How do I fix CVE-2024-11070?
To remediate CVE-2024-11070, it's crucial to update Sanluan PublicCMS to the latest version that addresses this vulnerability.
Which software versions are affected by CVE-2024-11070?
CVE-2024-11070 specifically affects Sanluan PublicCMS version 5.202406.d.
What type of vulnerability is CVE-2024-11070?
CVE-2024-11070 is a cross-site scripting (XSS) vulnerability caused by improper handling of user input in the Tag Type Handler.
What component is involved in CVE-2024-11070?
The vulnerability CVE-2024-11070 involves the /admin/cmsTagType/save file within the Tag Type Handler component.