CVE-2024-32391

C

ross Site Scripting vulnerability in MacCMS v.10 v.2024.1000.3000 allows a remote attacker to execute arbitrary code via a crafted payload.

References
Link Resource
https://github.com/magicblack/maccms10/issues/1133 Exploit Third Party Advisory
https://github.com/magicblack/maccms10/issues/1133 Exploit Third Party Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:maccms:maccms:10.0:2024.1000.3000:*:*:*:*:*:*

History

30 Apr 2025, 16:47

Type Values Removed Values Added
First Time Maccms
Maccms maccms
References () https://github.com/magicblack/maccms10/issues/1133 - () https://github.com/magicblack/maccms10/issues/1133 - Exploit, Third Party Advisory
CPE cpe:2.3:a:maccms:maccms:10.0:2024.1000.3000:*:*:*:*:*:*

21 Nov 2024, 09:14

Type Values Removed Values Added
References () https://github.com/magicblack/maccms10/issues/1133 - () https://github.com/magicblack/maccms10/issues/1133 -

03 Jul 2024, 01:56

Type Values Removed Values Added
CWE CWE-79
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.3

Information

Published : 2024-04-19 21:15

Updated : 2025-04-30 16:47


NVD link : CVE-2024-32391

Mitre link : CVE-2024-32391

CVE.ORG link : CVE-2024-32391


JSON object : View

Products Affected
CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')