CVE-2024-51213

CVSS 3.1 Score 6.1 of 10 (medium)

Details

Published Nov 11, 2024
Updated: Nov 12, 2024
CWE ID 79

Summary

CVE-2024-51213 is a newly identified Cross-Site Scripting (XSS) vulnerability that affects the Online Shop Store version 1.0. An attacker can exploit this flaw in the login.php component to inject and execute arbitrary code on unsuspecting users' browsers. This vulnerability poses a serious threat as it can lead to data theft, unauthorized account takeovers, and other malicious activities. Users are advised to update their Online Shop Store software to the latest version or implement appropriate security measures to mitigate the risk of XSS attacks. Failure to address this vulnerability promptly can result in significant security breaches.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share