CVE-2022-24384: Reflective XSS on SmarterTrack v100.0.8019.14010
Published Mar 14, 2022
·Updated
Cross-site Scripting (XSS) vulnerability in SmarterTools SmarterTrack This issue affects: SmarterTools SmarterTrack 100.0.8019.14010.
Affected Software
1 affected component
SmarterTools SmarterTrack<100.0.8075
Event History
Mar 14, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is CVE-2022-24384?
CVE-2022-24384 is a Cross-site Scripting (XSS) vulnerability in SmarterTools SmarterTrack.
2
How does CVE-2022-24384 impact SmarterTools SmarterTrack?
CVE-2022-24384 affects SmarterTools SmarterTrack version 100.0.8019.14010.
3
What is the severity of CVE-2022-24384?
The severity of CVE-2022-24384 is high, with a CVSS score of 6.1.
4
How can I fix CVE-2022-24384?
To fix CVE-2022-24384, update SmarterTools SmarterTrack to version 100.0.8075 or above.
5
What is a Cross-site Scripting (XSS) vulnerability?
Cross-site Scripting (XSS) vulnerability is a security vulnerability that allows an attacker to inject malicious scripts into web pages viewed by other users.