CVE-2024-32392

CVSS v3 Score
4.5
Medium

Vulnerability Description

Cross Site Scripting vulnerability in CmSimple v.5.15 allows a remote attacker to execute arbitrary code via the functions.php component.

CVSS:4.5(Medium)

Cross-site Scripting (XSS) - Stored in GitHub repository osticket/osticket prior to v1.16.6.

CWE-792023