CVE-2024-44918: XSS
Published Aug 30, 2024
·Updated
A cross-site scripting (XSS) vulnerability in the component admindatarelate.php of SeaCMS v12.9 allows attackers to execute arbitrary web scripts or HTML via a crafted payload.
Affected Software
2 affected components
SeaCms SeaCms
SeaCms SeaCms=12.9
Event History
Aug 30, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·05:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-44918?
The severity of CVE-2024-44918 is classified as medium, as it allows for cross-site scripting attacks.
2
How do I fix CVE-2024-44918?
To fix CVE-2024-44918, ensure to sanitize and validate all user inputs in the admin_datarelate.php component.
3
What are the potential impacts of CVE-2024-44918?
The potential impacts of CVE-2024-44918 include the execution of arbitrary web scripts or HTML, leading to data theft or session hijacking.
4
Which version of SeaCMS is affected by CVE-2024-44918?
CVE-2024-44918 affects SeaCMS v12.9.
5
Is CVE-2024-44918 a common vulnerability?
Yes, CVE-2024-44918 is a common cross-site scripting vulnerability found in web applications.