CVE-2024-56224

CVSS 3.1 Score 6.5 of 10 (medium)

Details

Published Dec 31, 2024
CWE ID 79

Summary

CVE-2024-56224 is a Cross-Site Scripting (XSS) vulnerability affecting Ledenbeheer, a product from an unknown version through 2.1.0. The flaw stems from improper neutralization of user inputs during web page generation. An attacker can exploit this vulnerability to inject malicious scripts into web pages, allowing them to steal user data or take control of user sessions. This poses a significant risk to users of Ledenbeheer and underscores the importance of keeping software up-to-date to protect against known vulnerabilities.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share