CVE-2024-31847
21.05.2024, 16:15
An issue was discovered in Italtel Embrace 1.6.4. A stored cross-site scripting (XSS) vulnerability allows authenticated and unauthenticated remote attackers to inject arbitrary web script or HTML into a GET parameter. This reflects/stores the user input without sanitization.
Vendor | Product | Version |
---|---|---|
italtel | embrace | 1.6.4 |
𝑥
= Vulnerable software versions