CVE-2024-6920

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in NAC Telecommunication Systems Inc. NACPremium allows Stored XSS.This issue affects NACPremium: through 01082024.
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:nac:nacpremium:*:*:*:*:*:*:*:*

History

17 Sep 2024, 15:58

Type Values Removed Values Added
First Time Nac nacpremium
Nac
CPE cpe:2.3:a:nac:nacpremium:*:*:*:*:*:*:*:*
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 6.1
References () https://www.usom.gov.tr/bildirim/tr-24-1376 - () https://www.usom.gov.tr/bildirim/tr-24-1376 - Broken Link

03 Sep 2024, 12:59

Type Values Removed Values Added
Summary
  • (es) Vulnerabilidad de neutralización incorrecta de la entrada durante la generación de páginas web ('Cross-site Scripting') en NAC Telecommunication Systems Inc. NACPremium permite XSS almacenado. Este problema afecta a NACPremium: hasta el 01082024.

02 Sep 2024, 18:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-09-02 18:15

Updated : 2024-09-17 15:58


NVD link : CVE-2024-6920

Mitre link : CVE-2024-6920

CVE.ORG link : CVE-2024-6920


JSON object : View

Products Affected

nac

  • nacpremium
CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')