First published: Fri Jan 17 2025(Updated: )
WeGIA < 3.2.0 is vulnerable to Cross Site Scripting (XSS) via the dados_addInfo parameter of documentos_funcionario.php.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Wegia Wegia | <3.2.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-57033 is classified as a Cross Site Scripting (XSS) vulnerability which can lead to unauthorized access to user data.
To fix CVE-2024-57033, upgrade WeGIA to version 3.2.0 or later to eliminate the vulnerability.
CVE-2024-57033 affects WeGIA versions prior to 3.2.0.
Yes, CVE-2024-57033 can be exploited remotely if a user can be tricked into interacting with a crafted link.
The potential impacts of CVE-2024-57033 include data theft, session hijacking, and the injection of malicious scripts.