← Back

CVE-2024-46083

nvd nist
Published: Oct 1, 2024Modified: Apr 28, 2025

JSON object

Loading...
5.4
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Exploitability: 2.3 / Impact: 2.7
Source: 134c704f-9b21-4f2e-91b3-4a467353bcc0 (Secondary)

Description

Scriptcase v9.10.023 and before is vulnerable to Cross Site Scripting (XSS). An authenticated user can craft malicious payloads using the messages feature, which allows the injection of malicious code into any user's account on the platform. It is important to note that regular users can trigger actions for administrator users.

Affected (1)

1 product
Scriptcase
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Up to 9.10.023

References (1)

Timeline

No history available yet.