CVE-2024-40101
Aug. 6, 2024, 4:30 p.m.
Tags
Product(s) Impacted
microweber
- 2.0.15 and earlier
Description
A Reflected Cross-site scripting (XSS) vulnerability exists in '/search' in microweber 2.0.15 and earlier allowing unauthenticated remote attackers to inject arbitrary web script or HTML via the 'keywords' parameter.
Weaknesses
Date
Published: Aug. 6, 2024, 2:16 p.m.
Last Modified: Aug. 6, 2024, 4:30 p.m.
Status : Awaiting Analysis
CVE has been recently published to the CVE List and has been received by the NVD.
More infoSource
cve@mitre.org
References
http://microweber.com/
cve@mitre.org
https://github.com/
cve@mitre.org
https://seclists.org/
cve@mitre.org