CVE-2024-45920

A Stored Cross-Site Scripting (XSS) vulnerability in Solvait 24.4.2 allows remote attackers to inject malicious scripts into the application. This issue arises due to insufficient input validation and sanitization in "Intrest" feature.
Configurations

No configuration.

History

04 Oct 2024, 13:51

Type Values Removed Values Added
Summary
  • (es) Una vulnerabilidad de Cross-Site Scripting (XSS) Almacenado en Solvait 24.4.2 permite a atacantes remotos inyectar secuencias de comandos maliciosas en la aplicación. Este problema surge debido a una validación y desinfección de entradas insuficientes en la función "Intrest".

30 Sep 2024, 18:35

Type Values Removed Values Added
CWE CWE-79
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.4

30 Sep 2024, 13:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-09-30 13:15

Updated : 2024-10-04 13:51


NVD link : CVE-2024-45920

Mitre link : CVE-2024-45920

CVE.ORG link : CVE-2024-45920


JSON object : View

Products Affected

No product.

CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')