CVE-2024-41374: XSS
Published Jul 26, 2024
·Updated
ICEcoder 8.1 is vulnerable to Cross Site Scripting (XSS) via lib/settings-screen.php
Affected Software
2 affected components
composer/icecoder/icecoder<=8.1
icecoder ICEcoder=8.1
Event History
Jul 26, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·05:15 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·05:15 PM
Affected Software
Advisory Published
via GitHub·06:30 PM
Frequently Asked Questions
1
What is the severity of CVE-2024-41374?
CVE-2024-41374 is classified as a moderate severity vulnerability.
2
How do I fix CVE-2024-41374?
To fix CVE-2024-41374, upgrade to a version of ICEcoder that is newer than 8.1 which addresses the XSS vulnerability.
3
What does CVE-2024-41374 affect?
CVE-2024-41374 affects ICEcoder version 8.1 via a Cross Site Scripting vulnerability in lib/settings-screen.php.
4
What type of vulnerability is CVE-2024-41374?
CVE-2024-41374 is a Cross Site Scripting (XSS) vulnerability.
5
Can CVE-2024-41374 be exploited remotely?
Yes, CVE-2024-41374 can potentially be exploited remotely due to its nature as an XSS vulnerability.