CVE-2024-57605: XSS
Published Feb 12, 2025
·Updated
Cross Site Scripting vulnerability in Daylight Studio Fuel CMS v.1.5.2 allows an attacker to escalate privileges via the /fuel/blocks/ and /fuel/pages components.
Affected Software
2 affected components
Daylight Studio Fuel CMS
TheDayLightStudio Fuel CMS=1.5.2
Event History
Feb 12, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·10:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-57605?
CVE-2024-57605 is considered to have a high severity due to the potential for privilege escalation.
2
How do I fix CVE-2024-57605?
To mitigate CVE-2024-57605, it is recommended to update to the latest version of Daylight Studio Fuel CMS that addresses this vulnerability.
3
What components are affected by CVE-2024-57605?
CVE-2024-57605 affects the /fuel/blocks/ and /fuel/pages components of Daylight Studio Fuel CMS v.1.5.2.
4
What kind of vulnerability is CVE-2024-57605?
CVE-2024-57605 is a Cross Site Scripting (XSS) vulnerability that can be exploited for privilege escalation.
5
Who is impacted by CVE-2024-57605?
Users of Daylight Studio Fuel CMS v.1.5.2 are impacted by CVE-2024-57605, particularly those utilizing the affected components.