← Back to CVE List

CVE-2024-12183

Published: 2024-12-04T23:15Z
Last Modified: 2024-12-10T16:05Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
A vulnerability, which was classified as problematic, was found in DedeCMS 5.7.116. This affects the function RemoveXSS of the file /plus/carbuyaction.php of the component HTTP POST Request Handler. The manipulation leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt