NA

CVE-2024-25506

Published: 28/03/2024 Updated: 28/03/2024

Vulnerability Summary

Cross Site Scripting vulnerability in Process Maker, Inc ProcessMaker prior to 4.0 allows a remote malicious user to run arbitrary code via control of the pm_sys_sys cookie.