Cross-site scripting vulnerability in a-blog cms Ver.2.8.x series versions prior to Ver.2.8.75, Ver.2.9.x series versions prior to Ver.2.9.40, Ver.2.10.x series versions prior to Ver.2.10.44, Ver.2.11.x series versions prior to Ver.2.11.42, and Ver.3.0.x series versions prior to Ver.3.0.1 allows a remote authenticated malicious user to inject an arbitrary script via unspecified vectors. This vulnerability is different from CVE-2022-24374.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
appleple a-blog cms |
||
appleple a-blog cms 3.0.0 |