CVE-2024-48535
20.11.2024, 21:15
A stored cross-site scripting (XSS) vulnerability in eSoft Planner 3.24.08271-USA allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into the Name parameter.
Vendor | Product | Version |
---|---|---|
esoftplanner | esoft_planner | 3.24.08271-usa |
𝑥
= Vulnerable software versions