Beveiligingsadvies

CVE-2024-55199

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2025-03-10 00:00:00
Laatst bijgewerkt 2025-03-10 18:02:08
Toegewezen door mitre
CVSS-score 5.4
Status PUBLISHED

Beschrijving

A Stored Cross Site Scripting (XSS) vulnerability in Celk Sistemas Celk Saude v.3.1.252.1 allows a remote attacker to store JavaScript code inside a PDF file through the file upload feature. When the file is rendered, the injected code is executed on the user's browser.