NA

CVE-2024-32339

Published: 17/04/2024 Updated: 18/04/2024

Vulnerability Summary

Multiple cross-site scripting (XSS) vulnerabilities in the HOW TO page of WonderCMS v3.4.3 allows malicious users to execute arbitrary web scripts or HTML via a crafted payload injected into any of the parameters.

Github Repositories

XSS in WonderCMS 343 (HOW TO PAGE) Software link: WonderCMS 343 [wwwwondercmscom/download] @author: Antonio Díaz Description: Cross-site scripting (XSS) vulnerability in the HOW TO Page section of WonderCMS 343 allow attackers to execute arbitrary web scripts or HTML via a crafted payload injected into all fields CVE: CVE-2024-32339 PoC HOW TO Page (CV