CVE-2024-10723 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

A stored cross-site scripting (XSS) vulnerability was discovered in phpipam/phpipam version 1.5.2. This vulnerability allows an attacker to inject malicious scr…
Medium CVSS: 5.4

CVE-2024-10723

A stored cross-site scripting (XSS) vulnerability was discovered in phpipam/phpipam version 1.5.2. This vulnerability allows an attacker to inject malicious scripts into the destination address field of the NAT tool, which can be executed when a user interacts with the field. The impact of this vulnerability includes the potential theft of user cookies, unauthorized access to user accounts, and redirection to malicious websites. The issue has been fixed in version 1.7.0.
Vendor
Phpipam
Product
Phpipam
CWE
CWE-79
Yayın Tarihi
2025-03-20 10:15:19
Güncelleme
2025-05-28 20:34:48
Source Identifier
security@huntr.dev
KEV Date Added
-

Kategoriler

Referanslar