Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-42690 | Stored cross-site scripting vulnerability exists in Exment v6.1.4 and earlier and Exment v5.0.11 and earlier. When accessing the edit screen containing custom columns (column type: images or files), an arbitrary script may be executed on the web browser of the user. |
Mon, 14 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Mon, 21 Oct 2024 21:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Exceedone
Exceedone exment |
|
| CPEs | cpe:2.3:a:exceedone:exment:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Exceedone
Exceedone exment |
|
| Metrics |
cvssV3_1
|
Fri, 18 Oct 2024 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 18 Oct 2024 06:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Stored cross-site scripting vulnerability exists in Exment v6.1.4 and earlier and Exment v5.0.11 and earlier. When accessing the edit screen containing custom columns (column type: images or files), an arbitrary script may be executed on the web browser of the user. | |
| Weaknesses | CWE-79 | |
| References |
| |
| Metrics |
cvssV3_0
|
Status: PUBLISHED
Assigner: jpcert
Published:
Updated: 2024-10-18T16:32:09.295Z
Reserved: 2024-10-03T07:09:45.540Z
Link: CVE-2024-47793
Updated: 2024-10-18T16:32:00.720Z
Status : Analyzed
Published: 2024-10-18T06:15:05.230
Modified: 2024-10-21T21:25:36.697
Link: CVE-2024-47793
No data.
OpenCVE Enrichment
No data.
EUVD