CVE-2024-9198

Publication date

2024-09-26 09:49:35

Family

INCIBE

State

PUBLISHED

Description

Vulnerability in Clibo Manager v1.1.9.1 that could allow an attacker to execute an stored Cross-Site Scripting (stored XSS ) by uploading a malicious .svg image in the section: Profile > Profile picture.