• caglararli@hotmail.com
  • 05386281520

CVE-2024-4350 | Concrete CMS up to 8.5.17/9.3.2 RSS Displayer cross site scripting

Çağlar Arlı      -    12 Views

CVE-2024-4350 | Concrete CMS up to 8.5.17/9.3.2 RSS Displayer cross site scripting

A vulnerability was found in Concrete CMS up to 8.5.17/9.3.2. It has been classified as problematic. Affected is an unknown function of the component RSS Displayer. The manipulation leads to cross site scripting. This vulnerability is traded as CVE-2024-4350. It is possible to launch the attack remotely. There is no exploit available. It is recommended to upgrade the affected component.