Today > vulnerabilities   -   You can now download lists of IOCs here!

CVE-2024-5961

June 14, 2024, 8:15 a.m.

Product(s) Impacted

2ClickPortal

  • 7.2.31 - 7.6.4

Description

Improper neutralization of input during web page generation vulnerability in 2ClickPortal software allows reflected cross-site scripting (XSS). An attacker might trick somebody into using a crafted URL, which will cause a script to be run in user's browser. This issue affects 2ClickPortal software versions from 7.2.31 through 7.6.4.

Weaknesses

Date

Published: June 14, 2024, 8:15 a.m.

Last Modified: June 14, 2024, 8:15 a.m.

Status : Received

CVE has been recently published to the CVE List and has been received by the NVD.

More info

Source

cvd@cert.pl

References