Description

Unrestricted Upload of File with Dangerous Type, Improper Input Validation, Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in django CMS Association django Filer allows Input Data Manipulation, Stored XSS.This issue affects django Filer: from 3 before 3.3.

INFO

Published Date :

2024-11-20T11:55:25.444Z

Last Modified :

2024-11-20T14:56:21.603Z

Source :

TR-CERT

Researchers

Following researchers has claimed that they have found this vulnerability.

Ali İltizar

@iltosec

AFFECTED PRODUCTS

The following products are affected by CVE-2024-11404 vulnerability.

No data.

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact