CVE-2024-8145 Information

Description

A vulnerability which was classified as problematic has been found in ClassCMS 4.8. Affected by this issue is some unknown functionality of the file /index.php/admin of the component Article Handler. The manipulation of the argument Title leads to basic cross site scripting. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.

Reference

https://vuldb.com/?id.275726 https://vuldb.com/?ctiid.275726 https://vuldb.com/?submit.397219 Submit #397219 | classcms 4.8 Arbitrary url jump https://github.com/acmglz/bug2_report/blob/main/classcms_url_jump.md https://github.com/acmglz/bug2_report/blob/main/classcms_url_jump.md

Share on: