← Back

CVE-2024-8750

nvd nist
Published: Sep 12, 2024Modified: Jun 17, 2026

JSON object

Loading...
6.1
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Exploitability: 2.8 / Impact: 2.7
Source: NVD

Description

Cross-site Scripting (XSS) vulnerability in idoit pro version 28. This vulnerability allows an attacker to retrieve session details of an authenticated user due to lack of proper sanitization of the following parameters (id,lang,mNavID,name,pID,treeNode,type,view).

Affected (1)

Products: I Doit: I Doit
1 product
I Doit
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 28

References (1)

Timeline

No history available yet.