ZeroHour

CVE-2024-45960

PoC
CVSS 3.1
4.8 medium
EPSS
<1%p30
Published
()
Modified
Description

Zenario 9.7.61188 allows authenticated admin users to upload PDF files containing malicious code into the target system. If the PDF file is accessed through the website, it can trigger a Cross Site Scripting (XSS) attack.

Vendors
tribalsystems
Products
zenario
Weakness
CWE-79
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.