xiaolanjing0

2 exploits Active since Feb 2024
CVE-2024-26445 WRITEUP MEDIUM WORKING POC
flusity-CMS v2.33 - Cross-Site Request Forgery via /core/tools/delete_place.php
flusity-CMS v2.33 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /core/tools/delete_place.php
CVSS 6.1
CVE-2024-27680 WRITEUP MEDIUM WRITEUP
Flusity-CMS 2.33 - Stored Cross-Site Scripting in Contact Form
Flusity-CMS v2.33 is vulnerable to Cross Site Scripting (XSS) in the "Contact form."
CVSS 6.1