CVE-2024-10287
- EPSS 0.08%
- Veröffentlicht 23.10.2024 12:15:03
- Zuletzt bearbeitet 24.10.2024 04:07:33
Cross-Site Scripting (XSS) vulnerability affecting LocalServer 1.0.9 that could allow a remote user to send a specially crafted query to an authenticated user and steal their session details through /mlss/ForgotPassword, parameter ListName.
CVE-2024-10288
- EPSS 0.08%
- Veröffentlicht 23.10.2024 12:15:03
- Zuletzt bearbeitet 24.10.2024 04:07:45
Cross-Site Scripting (XSS) vulnerability affecting LocalServer 1.0.9 that could allow a remote user to send a specially crafted query to an authenticated user and steal their session details through /mlss/SubscribeToList, parameter ListName.
CVE-2024-10289
- EPSS 0.08%
- Veröffentlicht 23.10.2024 12:15:03
- Zuletzt bearbeitet 24.10.2024 04:07:51
Cross-Site Scripting (XSS) vulnerability affecting LocalServer 1.0.9 that could allow a remote user to send a specially crafted query to an authenticated user and steal their session details through /mlss/ManageSubscription, parameter MSubListName.
CVE-2024-10286
- EPSS 0.08%
- Veröffentlicht 23.10.2024 12:15:02
- Zuletzt bearbeitet 24.10.2024 04:08:14
Cross-Site Scripting (XSS) vulnerability affecting LocalServer 1.0.9 that could allow a remote user to send a specially crafted query to an authenticated user and steal their session details through /testmail/index.php, parameter to.