logo
Vulnerability feed
CONTRIBUTE

Vulnerability

warn

CVE-2024-11971

Reference to the description:

https://nvd.nist.gov/vuln/detail/CVE-2024-11971

Description:
A vulnerability classified as problematic was found in Guizhou Xiaoma Technology jpress 5.1.2. Affected by this vulnerability is an unknown functionality of the file /commons/attachment/upload of the component Avatar Handler. The manipulation of the argument files leads to cross site scripting. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.
Last updated date:
12/03/2024
Type:
exploit
Confidence:
HIGH
Date of publishing:
12/03/2024
Reference url to background

https://github.com/dycccccccc/jpress/blob/main/JPRESS%20file%20upload%20leads%20to%20code%20execution.docx

Vulnerability FeedContributorsAboutBlog

@inTheWild

©2025

Privacy Policy