CVE-2024-55093
CVSS 3.1 Score 4.7 of 10 (medium)
Details
Published Mar 31, 2025
Updated: Apr 23, 2025
CWE ID 79
Summary
CVE-2024-55093 is a newly disclosed vulnerability affecting phpIPAM versions up to 1.7.3. The issue involves reflected Cross-Site Scripting (XSS) in the install scripts, allowing an attacker to inject malicious code into a user's web browser, potentially leading to session hijacking or data theft. Successful exploitation of this vulnerability could result in significant security risks for affected phpIPAM installations. Users are advised to update their software to the latest version as soon as possible to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- phpIPAM
Affected Vendors
- Phpipam