← Back

CVE-2024-3938

nvd nist
Published: Jul 25, 2024Modified: Nov 21, 2024

JSON object

Loading...
6.1
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Exploitability: 2.8 / Impact: 2.7
Source: NVD

Description

The "reset password" login page accepted an HTML injection via URL parameters. This has already been rectified via patch, and as such it cannot be demonstrated via Demo site link. Those interested to see the vulnerability may spin up a http://localhost:8082/dotAdmin/#/public/login?resetEmailSent=true&resetEmail=%3Ch1%3E%3Ca%20href%3D%22https:%2F%2Fgoogle.com%22%3ECLICK%20ME%3C%2Fa%3E%3C%2Fh1%3E This will result in a view along these lines: * OWASP Top 10 - A03: Injection * CVSS Score: 5.4 * AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N https://nvd.nist.gov/vuln-metrics/cvss/v3-calculator * https://nvd.nist.gov/vuln-metrics/cvss/v3-calculator?vector=AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N&... https://nvd.nist.gov/vuln-metrics/cvss/v3-calculator

Affected (20)

Products: Dotcms: Dotcms
1 product
Dotcms
Configuration A
20 vulnerable
Vulnerable SoftwareAffected Versions
Dotcms
From 23.02 to 23.09.7
From 23.12.21 to 24.04.23
From 24.05.13 to 24.05.31
From 5.1.5 to 23.01.18
Version 23.10.24.0
Version 23.10.24 10
Version 23.10.24 1
Version 23.10.24 2
Version 23.10.24 3
Version 23.10.24 4
Version 23.10.24 5
Version 23.10.24 6
Version 23.10.24 7
Version 23.10.24 8
Version 23.10.24 9
Version 24.04.24
Version 24.04.24 0
Version 24.04.24 1
Version 24.04.24 2
Version 24.04.24 3

References (2)

Source: security@dotcms.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory

Timeline

No history available yet.