Beveiligingsadvies

CVE-2024-4310

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2024-04-29 12:35:48
Laatst bijgewerkt 2024-08-01 20:33:53
Toegewezen door INCIBE
CVSS-score 6.3
Status PUBLISHED

Beschrijving

Cross-site Scripting (XSS) vulnerability in HubBank affecting version 1.0.2. This vulnerability allows an attacker to send a specially crafted JavaScript payload to registration and profile forms and trigger the payload when any authenticated user loads the page, resulting in a session takeover.