Beveiligingsadvies

CVE-2024-10332

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2024-10-24 12:14:32
Laatst bijgewerkt 2024-10-24 13:42:19
Toegewezen door INCIBE
CVSS-score 6.1
Status PUBLISHED

Beschrijving

A Cross-Site Scripting vulnerability has been found in Janto v4.3r11 from Impronta. This vulnerability allows an attacker to execute JavaScript code in the victim's browser by sending the victim a malicious URL using the endpoint “/abonados/public/janto/main.php”.