PT-2026-28220 · Unknown · Dameng100 Muucmf
Thinhnee
+1
·
Publicado
2026-03-26
·
Atualizado
2026-03-26
·
CVE-2026-4847
CVSS v2.0
5.0
Média
| Vetor | AV:N/AC:L/Au:N/C:N/I:P/A:N |
Name of the Vulnerable Software and Affected Versions
dameng100 muucmf version 1.9.5.20260309
Description
A cross site scripting issue exists due to manipulation of the
Name argument. The issue is located in an unknown function within the file '/admin/config/list.html'. The attack can be initiated remotely. The exploit has been publicly released. The vendor was contacted but did not respond.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
XSS
Code Injection
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Dameng100 Muucmf