Security Advisory

CVE-2024-5961

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-06-14 07:48:25
Last updated 2024-08-01 21:25:03
Assigner CERT-PL
State PUBLISHED

Description

Improper neutralization of input during web page generation vulnerability in 2ClickPortal software allows reflected cross-site scripting (XSS). An attacker might trick somebody into using a crafted URL, which will cause a script to be run in users browser. This issue affects 2ClickPortal software versions from 7.2.31 through 7.6.4.