ZeroHour

CVE-2024-30929

PoC
CVSS 3.1
8.0 high
EPSS
<1%p60
Published
()
Modified
Description

Cross Site Scripting vulnerability in DerbyNet v9.0 and below allows attackers to execute arbitrary code via the 'back' Parameter in playlist.php

Vendors
derbynet
Products
derbynet
Weakness
CWE-79
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.