CVE-2024-41375: XSS
Published Jul 26, 2024
·Updated
ICEcoder 8.1 is vulnerable to Cross Site Scripting (XSS) via lib/terminal-xhr.php
Affected Software
2 affected components
composer/icecoder/icecoder<=8.1
icecoder ICEcoder=8.1
Event History
Jul 26, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·05:15 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·05:15 PM
Affected Software
Advisory Published
via GitHub·06:30 PM
Frequently Asked Questions
1
What is the severity of CVE-2024-41375?
CVE-2024-41375 is classified as a medium severity vulnerability.
2
How do I fix CVE-2024-41375?
To fix CVE-2024-41375, it is recommended to upgrade to a patched version of ICEcoder beyond 8.1.
3
What type of vulnerability is CVE-2024-41375?
CVE-2024-41375 is a Cross-Site Scripting (XSS) vulnerability.
4
In which version of ICEcoder is CVE-2024-41375 found?
CVE-2024-41375 is found in ICEcoder version 8.1.
5
Can CVE-2024-41375 be exploited remotely?
Yes, CVE-2024-41375 can be exploited remotely, allowing attackers to inject malicious scripts.