Medium severity4.8NVD Advisory· Published Mar 12, 2024· Updated Jun 17, 2026
CVE-2024-26521
CVE-2024-26521
Description
HTML Injection vulnerability in CE Phoenix v1.0.8.20 and before allows a remote attacker to execute arbitrary code, escalate privileges, and obtain sensitive information via a crafted payload to the english.php component.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- Range: <=1.0.8.20
Patches
Vulnerability mechanics
News mentions
0No linked articles in our index yet.