CVE-2024-48535
20.11.2024, 21:15
A stored cross-site scripting (XSS) vulnerability in eSoft Planner 3.24.08271-USA allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into the Name parameter.
| Vendor | Product | Version |
|---|---|---|
| esoftplanner | esoft_planner | 3.24.08271-usa |
𝑥
= Vulnerable software versions