Show filters
4 Total Results
Displaying 1-4 of 4
Sort by:
Attacker Value
Unknown
CVE-2024-10289
Disclosure Date: October 23, 2024 (last updated October 24, 2024)
Cross-Site Scripting (XSS) vulnerability affecting LocalServer 1.0.9 that could allow a remote user to send a specially crafted query to an authenticated user and steal their session details through /mlss/ManageSubscription, parameter MSubListName.
0
Attacker Value
Unknown
CVE-2024-10288
Disclosure Date: October 23, 2024 (last updated October 24, 2024)
Cross-Site Scripting (XSS) vulnerability affecting LocalServer 1.0.9 that could allow a remote user to send a specially crafted query to an authenticated user and steal their session details through /mlss/SubscribeToList, parameter ListName.
0
Attacker Value
Unknown
CVE-2024-10287
Disclosure Date: October 23, 2024 (last updated October 24, 2024)
Cross-Site Scripting (XSS) vulnerability affecting LocalServer 1.0.9 that could allow a remote user to send a specially crafted query to an authenticated user and steal their session details through /mlss/ForgotPassword, parameter ListName.
0
Attacker Value
Unknown
CVE-2024-10286
Disclosure Date: October 23, 2024 (last updated October 24, 2024)
Cross-Site Scripting (XSS) vulnerability affecting LocalServer 1.0.9 that could allow a remote user to send a specially crafted query to an authenticated user and steal their session details through /testmail/index.php, parameter to.
0