Cross-Site Scripting vulnerability in moziloCMS version 2.0. By sending a POST request to the '/install.php' endpoint, a JavaScript payload could be executed in the 'username' parameter.
Advisories
Source ID Title
EUVD EUVD EUVD-2024-27201 Cross-Site Scripting vulnerability in moziloCMS version 2.0. By sending a POST request to the '/install.php' endpoint, a JavaScript payload could be executed in the 'username' parameter.
Fixes

Solution

There is no reported solution at this time.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: INCIBE

Published:

Updated: 2024-08-01T19:03:39.451Z

Reserved: 2024-03-07T08:08:16.136Z

Link: CVE-2024-2245

cve-icon Vulnrichment

Updated: 2024-08-01T19:03:39.451Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2024-03-07T13:15:07.590

Modified: 2024-11-21T09:09:20.533

Link: CVE-2024-2245

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2025-07-13T11:32:10Z

Weaknesses