First published: Thu Feb 01 2024(Updated: )
Cross Site Scripting (XSS) vulnerability in is_water parameter in eyoucms v.1.6.5 allows a remote attacker to run arbitrary code via crafted URL.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
EyouCms | =1.6.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-23031 is classified as a medium severity Cross Site Scripting (XSS) vulnerability.
To fix CVE-2024-23031, you should update Eyoucms to a patched version that addresses this vulnerability.
CVE-2024-23031 affects users of Eyoucms version 1.6.5.
CVE-2024-23031 can be exploited by an attacker to run arbitrary code through crafted URLs.
The vulnerable parameter involved in CVE-2024-23031 is 'is_water'.