CVE-2024-51213
CVSS 3.1 Score 6.1 of 10 (medium)
Details
Summary
CVE-2024-51213 is a newly identified Cross-Site Scripting (XSS) vulnerability that affects the Online Shop Store version 1.0. An attacker can exploit this flaw in the login.php component to inject and execute arbitrary code on unsuspecting users' browsers. This vulnerability poses a serious threat as it can lead to data theft, unauthorized account takeovers, and other malicious activities. Users are advised to update their Online Shop Store software to the latest version or implement appropriate security measures to mitigate the risk of XSS attacks. Failure to address this vulnerability promptly can result in significant security breaches.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.