CVE-2024-22910: Cross Site Scripting (XSS) vulnerability in CrushFTP v.10.6.0 and v.10.5.5 allows an attacker to execute arbitrary code via a crafted payload.

0.0 CVSS

Description

Cross Site Scripting (XSS) vulnerability in CrushFTP v.10.6.0 and v.10.5.5 allows an attacker to execute arbitrary code via a crafted payload.

Classification

CVE ID: CVE-2024-22910

CVSS Base Severity: LOW

CVSS Base Score: 0.0

Affected Products

Vendor: n/a

Product: n/a

References

https://gist.github.com/cgnl/672ace3cbad1116fcd9ae633e54ea9f8

Timeline