Security Advisory

CVE-2024-42699

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-04-21 00:00:00
Last updated 2025-04-21 16:06:19
Assigner mitre
State PUBLISHED

Description

Cross Site Scripting vulnerability in Create/Modify article function in Alkacon OpenCMS 17.0 allows remote attacker to inject javascript payload via image title sub-field in the image field