CVE-2024-10928Patch(monocms / monocms)

LOWCVSS 6.1 · MEDIUM

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch monocms monocms systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

A vulnerability was found in MonoCMS up to 20240528. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file /monofiles/opensaved.php of the component Posts Page. The manipulation of the argument filtcategory/filtstatus leads to cross site scripting. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-74CWE-79

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

AVAILABLE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • monocms

Threat summary

  • Patch or workaround signal is available
  • 1 mentions across 1 observed day

What's happening

  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 1 signal
  • 1 total mentions across 1 day

Affected systems

Vendors
Products
monocms

Deep dive

Activity timeline1 mentions / 1d
00111Mentions · 2026-05-10: 1Patch / Workaround · 2026-05-10: 1Technical Details · 2026-05-10: 105-10
Signal classification1 categories
Patch
1100.0%
Referenced assets1 URL
Full discourse1 post
  • Security Arsenal, LLC@SecurityAr58409
    Patch

    🔒 #CyberSecurity CVE-2024-10928: cPanel Unauthenticated RCE — Detection and Remediation Guide "Critical cPanel flaws (CVE-2024-10928) enable unauthenticated RCE and file reads. Patch…" 🔗 https://securityarsenal.com/blog/cve-2024-10928-cpanel-unauthenticated-rce-detection-and-remediation-guide #CyberSecurity #ThreatIntel #cve #zeroday #patchtuesday

    Post summary

    The post discloses the CVE‑2024‑10928 unauthenticated RCE vulnerability in cPanel, provides a brief description of the flaw, and confirms that a patch is available.

    0000052
    16 followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appmonocmsmonocms---

Explore more