PublicCMS 4.0 is vulnerable to Cross Site Scripting (XSS). Because files can be uploaded and online preview function is provided, pdf files and html files containing malicious code are uploaded, an XSS popup window is realized through online viewing.
References
Link Resource
https://github.com/sanluan/PublicCMS/issues/79 Exploit Issue Tracking
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2024-01-10T00:00:00

Updated: 2024-01-10T08:32:36.503933

Reserved: 2023-12-18T00:00:00


Link: CVE-2023-51252

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2024-01-10T09:15:44.340

Modified: 2024-01-16T14:52:36.910


Link: CVE-2023-51252

JSON object: View

cve-icon Redhat Information

No data.

CWE