CVE-2024-10332

A Cross-Site Scripting vulnerability has been found in Janto v4.3r11 from Impronta. This vulnerability allows an attacker to execute JavaScript code in the victim's browser by sending the victim a malicious URL using the endpoint “/abonados/public/janto/main.php”.
Configurations

No configuration.

History

25 Oct 2024, 12:56

Type Values Removed Values Added
Summary
  • (es) Se ha descubierto una vulnerabilidad de tipo Cross-Site Scripting en Janto v4.3r11 de Impronta. Esta vulnerabilidad permite a un atacante ejecutar código JavaScript en el navegador de la víctima enviándole una URL maliciosa mediante el endpoint “/abonados/public/janto/main.php”.

24 Oct 2024, 13:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-10-24 13:15

Updated : 2024-10-25 12:56


NVD link : CVE-2024-10332

Mitre link : CVE-2024-10332

CVE.ORG link : CVE-2024-10332


JSON object : View

Products Affected

No product.

CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')