CVE-2024-30921
Cross Site Scripting vulnerability in DerbyNet v9.0 and below allows a remote attacker to execute arbitrary code via the
Cross Site Scripting vulnerability in DerbyNet v9.0 and below allows a remote attacker to execute arbitrary code via the photo.php component.
MEDIUM · CVSS 5.4
EPSS 0.01124
Schedule remediation
- Public exploit or PoC is available
Sigma rules0
YARA rules0