CVE-2024-48228 - Funadmin XSS

1 month ago 13
ARTICLE AD BOX
CVE ID : CVE-2024-48228
Published : Oct. 25, 2024, 10:15 p.m. | 25 minutes ago
Description : An issue was found in funadmin 5.0.2. The selectfiles method in \backend\controller\sys\Attachh.php directly stores the passed parameters and values into the param parameter without filtering, resulting in Cross Site Scripting (XSS).
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
Read Entire Article