CVE-2024-32492

An issue was discovered in Znuny 7.0.1 through 7.0.16 where the ticket detail view in the customer front allows the execution of external JavaScript.
Configurations

No configuration.

History

03 Jul 2024, 01:56

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.1
Summary
  • (es) Se descubriĆ³ un problema en Znuny 7.0.1 a 7.0.16 donde la vista de detalles del ticket en el frente del cliente permite la ejecuciĆ³n de JavaScript externo.
CWE CWE-94

29 Apr 2024, 17:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-04-29 17:15

Updated : 2024-07-03 01:56


NVD link : CVE-2024-32492

Mitre link : CVE-2024-32492

CVE.ORG link : CVE-2024-32492


JSON object : View

Products Affected

No product.

CWE
CWE-94

Improper Control of Generation of Code ('Code Injection')