CVE-2024-55239
Dec. 18, 2024, 11:15 p.m.
Tags
Product(s) Impacted
Portabilis i-Educar
- 2.9
Description
A reflected Cross-Site Scripting vulnerability in the standard documentation upload functionality in Portabilis i-Educar 2.9 allows attacker to craft malicious urls with arbitrary javascript in the 'titulo_documento' parameter.
Weaknesses
Date
Published: Dec. 18, 2024, 11:15 p.m.
Last Modified: Dec. 18, 2024, 11:15 p.m.
Status : Received
CVE has been recently published to the CVE List and has been received by the NVD.
More infoSource
cve@mitre.org
References
https://github.com/
cve@mitre.org