Description

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in django CMS Association django-cms allows Cross-Site Scripting (XSS).This issue affects django-cms: 3.11.7, 3.11.8, 4.1.2, 4.1.3.

INFO

Published Date :

2024-11-18T11:53:04.244Z

Last Modified :

2025-01-06T17:54:42.392Z

Source :

TR-CERT

Researchers

Following researchers has claimed that they have found this vulnerability.

Ali İltizar

@iltosec

AFFECTED PRODUCTS

The following products are affected by CVE-2024-11319 vulnerability.

Vendors Products
Django-cms
  • Django Cms

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact