Description
A stored cross-site scripting (XSS) vulnerability in Alkacon OpenCMS v17.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the image parameter under the Create/Modify article function.
Exploits
No known exploits found for this CVE.
Search Exploit-DBReferences
cve@mitre.org
http://alkacon.comcve@mitre.org
http://opencms.com134c704f-9b21-4f2e-91b3-4a467353bcc0
https://github.com/Sidd545-cr/CVE/blob/main/CVE-2024-41446%20-%20Stored%20XSS%20in%20image%20copyright%20attribute.pdf