Security Advisory

CVE-2024-10332

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2024-10-24 12:14:32
Last updated 2024-10-24 13:42:19
Assigner INCIBE
CVSS score 6.1
State PUBLISHED

Description

A Cross-Site Scripting vulnerability has been found in Janto v4.3r11 from Impronta. This vulnerability allows an attacker to execute JavaScript code in the victim's browser by sending the victim a malicious URL using the endpoint “/abonados/public/janto/main.php”.