PoC Index

CVE-2024-24571

MEDIUM 5.4EPSS 0.4%

facileManager is a modular suite of web apps built with the sysadmin in mind. For the facileManager web application versions 4.5.0 and earlier, we have found that XSS was present in almost all of the input fields as there is insufficient input validation.

CVSS v3.1
5.4 MEDIUMCVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
CVSS v3.1
5.4 MEDIUMCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N
EPSS
0.42% chance of exploitation in the next 30 days, 35th percentile
Published
2024-01-31
Updated
2025-05-29

Proof-of-concept exploits (1)

References

Related