Cross Site Scripting vulnerability in audimex audimexEE v.15.1.2 and fixed in 15.1.3.9 allows a remote attacker to execute arbitrary code via the service, method, widget_type, request_id, payload parameters.
References
Link Resource
https://github.com/robymontyz/pocs/blob/main/AudimexEE/ReflectedXSS.md Exploit Mitigation Third Party Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-06-04T21:39:47.503242

Reserved:


Link: CVE-2024-30889

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2024-06-04T22:15:10.243

Modified: 2024-06-06T19:09:09.840


Link: CVE-2024-30889

JSON object: View

cve-icon Redhat Information

No data.

CWE