A reflected Cross-Site Scripting (XSS) vulnerability in FUEL CMS 1.5.2allows attackers to run arbitrary code via crafted string after the group_id parameter.
Metrics
Affected Vendors & Products
References
History
Thu, 03 Apr 2025 13:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Thedaylightstudio
Thedaylightstudio fuel Cms |
|
CPEs | cpe:2.3:a:thedaylightstudio:fuel_cms:1.5.2:*:*:*:*:*:*:* | |
Vendors & Products |
Thedaylightstudio
Thedaylightstudio fuel Cms |
Tue, 12 Nov 2024 18:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-79 | |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-11-12T18:04:46.878Z
Reserved: 2024-02-07T00:00:00
Link: CVE-2024-25369

Updated: 2024-08-01T23:44:08.639Z

Status : Analyzed
Published: 2024-02-22T20:15:56.880
Modified: 2025-04-03T13:17:55.910
Link: CVE-2024-25369

No data.