Medium severity5.3NVD Advisory· Published Apr 25, 2024· Updated Jun 17, 2026
CVE-2024-29660
CVE-2024-29660
Description
Cross Site Scripting vulnerability in DedeCMS v.5.7 allows a local attacker to execute arbitrary code via a crafted payload to the stepselect_main.php component.
Affected products
3Patches
Vulnerability mechanics
References
1- github.com/ysl1415926/cve/blob/main/DedeCMSv5.7.mdnvdBroken Link
News mentions
0No linked articles in our index yet.