Cross Site Scripting (XSS) vulnerability in Lime Survey Community Edition Version v.5.3.32+220817, allows remote attackers to execute arbitrary code via the Administrator email address parameter in the General Setting function.
{
"osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2024/24xxx/CVE-2024-24506.json",
"cna_assigner": "mitre"
}{
"source": "CPE_STRING",
"cpe": "cpe:2.3:a:limesurvey:limesurvey:5.3.32:220817:*:*:*:*:*:*",
"extracted_events": [
{
"introduced": "5.3.32-220817"
},
{
"last_affected": "5.3.32-220817"
}
]
}