PT-2024-5672 · Unknown · Netcat Cms

Published

2024-07-16

·

Updated

2024-07-16

CVSS v2.0

9.0

High

VectorAV:N/AC:L/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Netcat CMS (affected versions not specified)
Description The issue exists due to inadequate protection of the web page structure, specifically affecting the component id and object id parameters of the landing module in the Netcat CMS system. This could allow a remote attacker to execute arbitrary JavaScript code in a user's browser.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

XSS

Weakness Enumeration

Related Identifiers

BDU:2024-06385

Affected Products

Netcat Cms