CVE-2024-8457

Publication date

2024-09-30 07:39:17

Family

twcert

State

PUBLISHED

Description

Certain switch models from PLANET Technology have a web application that does not properly validate specific parameters, allowing remote authenticated users with administrator privileges to inject arbitrary JavaScript, leading to Stored XSS attack.