First published: Tue Nov 19 2024(Updated: )
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Information Analytics IA Map Analytics Basic allows DOM-Based XSS.This issue affects IA Map Analytics Basic: from n/a through 20170413.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM InfoSphere Information Analyzer | >=n/a<=20170413 | |
WordPress IA Map Analytics Basic | <=20170413 |
Deactivate and delete.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2024-51937 is classified as Medium due to its potential for exploitation through DOM-Based Cross-site Scripting.
To fix CVE-2024-51937, update the IA Map Analytics Basic software to the latest version beyond 20170413.
CVE-2024-51937 affects both Information Analytics IA Map Analytics Basic and WordPress IA Map Analytics Basic applications.
Exploitation of CVE-2024-51937 could allow attackers to execute arbitrary scripts in the context of the user's browser.
Currently, there are no publicly documented exploits for CVE-2024-51937, but the possibility exists due to the nature of DOM-Based XSS.