Security Advisory

CVE-2024-21584

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-03-12 07:25:44
Last updated 2025-03-13 16:09:31
Assigner jpcert
State PUBLISHED

Description

Pleasanter 1.3.49.0 and earlier contains a cross-site scripting vulnerability. If an attacker tricks the user to access the product with a specially crafted URL and perform a specific operation, an arbitrary script may be executed on the web browser of the user.