CVE-2024-12665: ruifang-tech Rebuild Task Comment Attachment Upload cross site scripting
A vulnerability, which was classified as problematic, was found in ruifang-tech Rebuild 3.8.5. Affected is an unknown function of the component Task Comment Attachment Upload. The manipulation leads to cross site scripting. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-12665?
CVE-2024-12665 is classified as a problematic vulnerability due to its potential for cross-site scripting attacks.
How do I fix CVE-2024-12665?
To fix CVE-2024-12665, it is recommended to update to the latest version of ruifang-tech Rebuild that addresses the vulnerability.
What component is affected by CVE-2024-12665?
CVE-2024-12665 affects the Task Comment Attachment Upload component of ruifang-tech Rebuild 3.8.5.
Can CVE-2024-12665 be exploited remotely?
Yes, CVE-2024-12665 can be exploited remotely, allowing attackers to launch cross-site scripting attacks.
What types of attacks are possible with CVE-2024-12665?
CVE-2024-12665 allows for cross-site scripting attacks, which can compromise user data and application integrity.