CVE-2024-57033: XSS
Published Jan 17, 2025
·Updated
WeGIA < 3.2.0 is vulnerable to Cross Site Scripting (XSS) via the dadosaddInfo parameter of documentosfuncionario.php.
Affected Software
1 affected component
WeGIA WeGIA<3.2.0
Event History
Jan 17, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·09:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-57033?
CVE-2024-57033 is classified as a Cross Site Scripting (XSS) vulnerability which can lead to unauthorized access to user data.
2
How do I fix CVE-2024-57033?
To fix CVE-2024-57033, upgrade WeGIA to version 3.2.0 or later to eliminate the vulnerability.
3
What is the affected software for CVE-2024-57033?
CVE-2024-57033 affects WeGIA versions prior to 3.2.0.
4
Can CVE-2024-57033 be exploited remotely?
Yes, CVE-2024-57033 can be exploited remotely if a user can be tricked into interacting with a crafted link.
5
What are the potential impacts of CVE-2024-57033?
The potential impacts of CVE-2024-57033 include data theft, session hijacking, and the injection of malicious scripts.