First published: Wed Dec 04 2024(Updated: )
A vulnerability, which was classified as problematic, has been found in DedeCMS 5.7.116. Affected by this issue is some unknown functionality of the file /member/soft_add.php. The manipulation of the argument body leads to cross site scripting. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
Dedecms v6 | <5.7.116 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-12182 is classified as a problematic vulnerability affecting DedeCMS 5.7.116.
To fix CVE-2024-12182, you should upgrade to a version of DedeCMS that is not affected by this vulnerability.
CVE-2024-12182 is a cross-site scripting (XSS) vulnerability.
CVE-2024-12182 affects DedeCMS version 5.7.116 and earlier.
Yes, CVE-2024-12182 can be exploited remotely by manipulating the argument body in the vulnerable file.