CVE-2024-57030: XSS
Published Jan 17, 2025
·Updated
Wegia < 3.2.0 is vulnerable to Cross Site Scripting (XSS) in /geral/documentosfuncionario.php via the id parameter.
Affected Software
1 affected component
WeGIA WeGIA<3.2.0
Event History
Jan 17, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·08:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-57030?
CVE-2024-57030 is classified as a Cross Site Scripting (XSS) vulnerability.
2
How do I fix CVE-2024-57030?
To fix CVE-2024-57030, upgrade Wegia to version 3.2.0 or later.
3
What versions of Wegia are affected by CVE-2024-57030?
Wegia versions prior to 3.2.0 are affected by CVE-2024-57030.
4
What kind of attacks can be executed due to CVE-2024-57030?
CVE-2024-57030 allows attackers to execute malicious scripts in the context of the user’s browser.
5
Is user input validation adequate in Wegia for CVE-2024-57030?
No, user input validation is insufficient in Wegia versions below 3.2.0, leading to CVE-2024-57030.