Описание
A reflected cross-site scripting (XSS) vulnerability in Gladinet CentreStack v13.12.9934.54690 allows attackers to inject malicious JavaScript into the web browser of a victim via the sessionId parameter at /portal/ForgotPassword.aspx.
A reflected cross-site scripting (XSS) vulnerability in Gladinet CentreStack v13.12.9934.54690 allows attackers to inject malicious JavaScript into the web browser of a victim via the sessionId parameter at /portal/ForgotPassword.aspx.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2024-37783
- https://gist.githubusercontent.com/Draoken/9526cd338b7941340b7bf12340324215/raw/f32c03ee229210f9f039293bd2f3c7fe1d9be8c4/CVE-2024-37783.txt
- https://medium.com/%40jkoreamo/centrestack-vulnerability-disclosure-d28dc8f21a56
- https://www.centrestack.com/p/gce_latest_release.html
Связанные уязвимости
CVSS3: 5.4
nvd
около 1 года назад
A reflected cross-site scripting (XSS) vulnerability in Gladinet CentreStack v13.12.9934.54690 allows attackers to inject malicious JavaScript into the web browser of a victim via the sessionId parameter at /portal/ForgotPassword.aspx.