Description
A html code injection vulnerability exists in the vlan management part of Observium CE 24.4.13528. A specially crafted HTTP request can lead to an arbitrary html code. An authenticated user would need to click a malicious link provided by the attacker.
INFO
Published Date :
2025-01-15T14:59:29.089Z
Last Modified :
2025-01-15T17:02:49.275Z
Source :
talos
AFFECTED PRODUCTS
The following products are affected by CVE-2024-47002 vulnerability.
| Vendors | Products |
|---|---|
| Observium |
|
REFERENCES
Here, you will find a curated list of external links that provide in-depth information to CVE-2024-47002.
CVSS Vulnerability Scoring System
Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact