Medium severity6.1NVD Advisory· Published Apr 3, 2024· Updated Jun 17, 2026
CVE-2024-24506
CVE-2024-24506
Description
Cross Site Scripting (XSS) vulnerability in Lime Survey Community Edition Version v.5.3.32+220817, allows remote attackers to execute arbitrary code via the Administrator email address parameter in the General Setting function.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:limesurvey:limesurvey:5.3.32:220817:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:limesurvey:limesurvey:5.3.32:220817:*:*:*:*:*:*
- (no CPE)range: v.5.3.32+220817
- Lime Survey Community Edition/Lime Survey Community Editiondescription
Patches
Vulnerability mechanics
References
2- www.exploit-db.com/exploits/51926nvdExploitThird Party Advisory
- bugs.limesurvey.org/bug_relationship_graph.phpnvdBroken Link
News mentions
0No linked articles in our index yet.