CVE-2024-52701
Nov. 20, 2024, 9:15 p.m.
Tags
Product(s) Impacted
Piwigo
- 14.5.0
Description
A stored cross-site scripting (XSS) vulnerability in the Configuration page of Piwigo v14.5.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Page banner parameter.
Weaknesses
Date
Published: Nov. 20, 2024, 9:15 p.m.
Last Modified: Nov. 20, 2024, 9:15 p.m.
Status : Received
CVE has been recently published to the CVE List and has been received by the NVD.
More infoSource
cve@mitre.org
References
https://github.com/
cve@mitre.org