---
cve: "CVE-2024-13031"
severity: "MEDIUM"
cvss: 5.1
epss: "38%"
vendor: "Antabot"
kev: false
exploited: false
published: "2024-12-30 01:15:06"
tags: [cve, security, medium]
source: tsecurity.de CVE-Dossier
exported: "2026-09-13T22:00:10+02:00"
---

# CVE-2024-13031

> 5.1 MEDIUM · 🧪 PoC

## Beschreibung

A vulnerability classified as problematic has been found in Antabot White-Jotter up to 0.2.2. Affected is an unknown function of the file /admin/content/editor of the component Article Content Editor. The manipulation leads to cross site scripting. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.

## CVSS-Vektor

```
CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N
```

| Metrik | Wert | Bewertung |
|---|---|---|
| AV Angriffsvektor | Netzwerk | bad |
| AC Komplexität | Gering | bad |
| PR Privilegien | Hoch | good |
| UI Interaktion | Keine | bad |

## Referenzen

- <https://vuldb.com/?id.289764>
- <https://vuldb.com/?ctiid.289764>
- <https://vuldb.com/?submit.466530>
- <https://github.com/cydtseng/Vulnerability-Research/blob/main/white-jotter/ReflectedXSS-ContentEditor.md>

---
_Exportiert aus dem [tsecurity.de CVE-Dossier](https://tsecurity.de/cve?cve=CVE-2024-13031) · Datenquellen: EUVD (ENISA), NVD, OSV, CISA KEV, FIRST EPSS, Exploit-DB, BSI BITS_
