First published: Tue Oct 29 2024(Updated: )
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Kiboko Labs Namaste! LMS allows Reflected XSS.This issue affects Namaste! LMS: from n/a through 2.6.2.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Kibokolabs Namaste\! Lms | <2.6.3 |
Update to 2.6.3 or a higher version.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-50407 is considered a medium severity vulnerability due to its Reflected Cross-site Scripting (XSS) risk.
To fix CVE-2024-50407, upgrade Namaste! LMS to version 2.6.3 or later.
CVE-2024-50407 is an Improper Neutralization of Input During Web Page Generation vulnerability, commonly known as XSS.
CVE-2024-50407 affects Namaste! LMS versions prior to 2.6.3.
Yes, CVE-2024-50407 can be exploited remotely due to its nature as a Reflected XSS vulnerability.