Cross Site Scripting vulnerability in DouPHP v.1.8 Release 20231203 allows attackers to execute arbitrary code via a crafted payload injected into the description parameter in /admin/article.php
Metrics
Affected Vendors & Products
References
History
Thu, 03 Jul 2025 01:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Douco
Douco douphp |
|
CPEs | cpe:2.3:a:douco:douphp:1.7_20231203:*:*:*:*:*:*:* | |
Vendors & Products |
Douco
Douco douphp |
Thu, 06 Feb 2025 21:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-79 | |
Metrics |
cvssV3_1
|
Thu, 06 Feb 2025 17:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Cross Site Scripting vulnerability in DouPHP v.1.8 Release 20231203 allows attackers to execute arbitrary code via a crafted payload injected into the description parameter in /admin/article.php | |
References |
|

Status: PUBLISHED
Assigner: mitre
Published: 2025-02-06T00:00:00.000Z
Updated: 2025-02-06T21:01:02.852Z
Reserved: 2025-01-09T00:00:00.000Z
Link: CVE-2024-57599

Updated: 2025-02-06T20:59:47.845Z

Status : Analyzed
Published: 2025-02-06T17:15:20.820
Modified: 2025-07-03T01:16:45.680
Link: CVE-2024-57599

No data.