First published: Fri Jan 17 2025(Updated: )
Wegia < 3.2.0 is vulnerable to Cross Site Scripting (XSS) in /geral/documentos_funcionario.php via the id parameter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Wegia Wegia | <3.2.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-57030 is classified as a Cross Site Scripting (XSS) vulnerability.
To fix CVE-2024-57030, upgrade Wegia to version 3.2.0 or later.
Wegia versions prior to 3.2.0 are affected by CVE-2024-57030.
CVE-2024-57030 allows attackers to execute malicious scripts in the context of the user’s browser.
No, user input validation is insufficient in Wegia versions below 3.2.0, leading to CVE-2024-57030.