CVE-2024-31835

Oct. 1, 2024, 7:15 p.m.

Products impacted

Flatpress CMS

  • 1.3

Source

cve@mitre.org

Date

Published: Oct. 1, 2024, 7:15 p.m.

Last Modified: Oct. 1, 2024, 7:15 p.m.

Status : Received

CVE has been recently published to the CVE List and has been received by the NVD.

More info

Description

Cross Site Scripting vulnerability in flatpress CMS Flatpress v1.3 allows a remote attacker to execute arbitrary code via a crafted payload to the file name parameter.

Weaknesses

References