Sites managed in S@M CMS (Concept Intermedia) might be vulnerable to Reflected XSS via including scripts in requested file names.
Only a part of observed services is vulnerable, but since vendor has not investigated the root problem, it is hard to determine when the issue appears.
Metrics
Affected Vendors & Products
References
History
Thu, 13 Mar 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: CERT-PL
Published: 2024-06-28T12:43:48.664Z
Updated: 2025-03-13T19:52:53.938Z
Reserved: 2024-04-15T10:51:30.313Z
Link: CVE-2024-3800
Updated: 2024-08-01T20:20:02.258Z
Status : Modified
Published: 2024-06-28T13:15:02.990
Modified: 2025-03-13T20:15:21.367
Link: CVE-2024-3800
No data.
ReportizFlow