CVE-2024-28725

Publication date

2024-05-06 00:00:00

Family

mitre

State

PUBLISHED

Description

Cross Site Scripting (XSS) vulnerability in YzmCMS 7.0 allows attackers to run arbitrary code via Ads Management, Carousel Management, and System Settings.