Sites managed in S@M CMS (Concept Intermedia) might be vulnerable to Reflected XSS via including scripts in requested file names.
Only a part of observed services is vulnerable, but since vendor has not investigated the root problem, it is hard to determine when the issue appears.
CVSS
No CVSS.
References
No reference.
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: CERT-PL
Published: 2024-06-28T12:43:48.664Z
Updated: 2024-06-28T13:51:58.696Z
Reserved: 2024-04-15T10:51:30.313Z
Link: CVE-2024-3800
JSON object: View
NVD Information
No data.
Redhat Information
No data.
CWE