logo
Vulnerability feed
CONTRIBUTE

Vulnerability

warn

CVE-2024-40347

Reference to the description:

https://nvd.nist.gov/vuln/detail/CVE-2024-40347

Description:
A reflected cross-site scripting (XSS) vulnerability in Hyland Alfresco Platform 23.2.1-r96 allows attackers to execute arbitrary code in the context of a user's browser via injecting a crafted payload into the parameter htmlid.
Last updated date:
08/22/2024
Type:
exploit
Confidence:
HIGH
Date of publishing:
08/22/2024
Reference url to background

https://github.com/4rdr/proofs/blob/main/info/Alfresco_Reflected_XSS_via_htmlid_parameter.md

Vulnerability FeedContributorsAboutBlog

@inTheWild

©2024

Privacy Policy