CVE-2024-30193

CVSS 3.1 Score 6.5 of 10 (medium)

Details

Published Mar 27, 2024
CWE ID 79

Summary

CVE-2024-30193 is a Cross-site Scripting (XSS) vulnerability affecting the Church Admin software version 4.1.17 and below. An attacker can exploit this weakness during the web page generation process by injecting malicious scripts, leading to potential unauthorized access or data theft. The flaw stems from improper neutralization of user-supplied data.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share