Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Wed, 16 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Thu, 03 Jul 2025 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:seeddms:seeddms:6.0.28:*:*:*:*:*:*:* |
Mon, 07 Oct 2024 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Seeddms
Seeddms seeddms |
|
| Weaknesses | CWE-79 | |
| CPEs | cpe:2.3:a:seeddms:seeddms:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Seeddms
Seeddms seeddms |
|
| Metrics |
cvssV3_1
|
Fri, 04 Oct 2024 16:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A stored cross-site scripting (XSS) vulnerability in SeedDMS v6.0.28 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into the Name parameter in the Calendar page. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-10-04T18:29:36.173Z
Reserved: 2024-09-11T00:00:00.000Z
Link: CVE-2024-46409
Updated: 2024-10-04T18:29:30.480Z
Status : Analyzed
Published: 2024-10-04T17:15:17.073
Modified: 2025-07-03T14:13:31.750
Link: CVE-2024-46409
No data.
OpenCVE Enrichment
No data.