CVE-2024-25221

CVSS 3.1 Score 6.1 of 10 (medium)

Details

Published Feb 14, 2024
Updated: Feb 16, 2024
CWE ID 79

Summary

CVE-2024-25221 is a cross-site scripting (XSS) vulnerability found in Task Manager App v1.0. Attackers can exploit this vulnerability by injecting a crafted payload into the Note Section parameter at /TaskManager/Tasks.php, allowing them to execute arbitrary web scripts or HTML. The vulnerability has a base severity of MEDIUM with a base score of 6.1, and it requires user interaction and no privileges. The impact score is 2.7, indicating low integrity and confidentiality impacts. The vulnerability has a CVSS vector string of CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N. Remediation measures are not provided in the information available.

Explore Beyond the CVE Basics with Recorded Future's Vulnerability Intelligence

Note: This is just a basic overview providing quick insights into CVE-2024-25221 information. Gain full access to comprehensive CVE data, risk scores, prioritization, and mitigation data through Recorded Future's Vulnerability Intelligence:
  • Prioritize with Risk-Based Scoring
  • Explore the Extensive Vulnerability Database
  • Receive Early Alerts on Emerging CVEs
  • Focus on Critical Exploitable Vulnerabilities
  • Streamline Remediation with Integration Options