CVE-2024-12974: XSS in Akinsoft's ProKuaför
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Akinsoft ProKuaför allows Cross-Site Scripting (XSS).
This issue affects ProKuaför: from s1.02.07 before v1.02.08.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-12974?
CVE-2024-12974 is classified as a Cross-Site Scripting (XSS) vulnerability, which can lead to significant security issues if exploited.
How do I fix CVE-2024-12974?
To fix CVE-2024-12974, update Akinsoft ProKuaför to version 1.02.08 or later.
What versions of Akinsoft ProKuaför are affected by CVE-2024-12974?
Akinsoft ProKuaför versions from s1.02.07 and before v1.02.08 are affected by CVE-2024-12974.
What impact does CVE-2024-12974 have on my application?
CVE-2024-12974 allows attackers to inject malicious scripts into web pages viewed by users, potentially compromising user data.
Is CVE-2024-12974 being actively exploited?
As of now, there are no reported active exploits for CVE-2024-12974, but it is advisable to apply patches promptly.