CVE-2024-5142: XSS in Hubshare's social module
Published May 24, 2024
·Updated
Stored Cross-Site Scripting vulnerability in Social Module in M-Files Hubshare before version 5.0.6.0 allows authenticated attacker to run scripts in other users browser
Affected Software
2 affected components
M-Files Hubshare<5.0.6.0
M-Files Hubshare<5.0.6.0
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
M-Files Hubshare (Social Module)to a version that resolves this vulnerability.Fixed in 5.0.6.0
Event History
May 24, 2024
CVE Published
via MITRE·05:58 AM
Data Sourced
via MITRE·05:58 AM
RemedyDescriptionWeakness
Data Sourced
via NVD·06:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-5142?
CVE-2024-5142 is classified as a stored cross-site scripting vulnerability.
2
How do I fix CVE-2024-5142?
To fix CVE-2024-5142, update M-Files Hubshare to version 5.0.6.0 or later.
3
Who is affected by CVE-2024-5142?
Authenticated users of M-Files Hubshare versions prior to 5.0.6.0 are affected by CVE-2024-5142.
4
What can an attacker do with CVE-2024-5142?
An attacker can run scripts in other users' browsers, potentially compromising user data and security.
5
When was CVE-2024-5142 reported?
CVE-2024-5142 was identified in M-Files Hubshare before version 5.0.6.0.