ID4Portais in version < V.2022.837.002a returns message parameter unsanitized in the response, resulting in a HTML Injection vulnerability.
Metrics
Affected Vendors & Products
References
History
Mon, 12 Aug 2024 16:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Devlop.systems
Devlop.systems id4portais |
|
Weaknesses | CWE-79 | |
CPEs | cpe:2.3:a:devlop.systems:id4portais:*:*:*:*:*:*:*:* | |
Vendors & Products |
Devlop.systems
Devlop.systems id4portais |
Wed, 07 Aug 2024 16:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Id4software
Id4software id4portais |
|
Weaknesses | CWE-233 | |
CPEs | cpe:2.3:a:id4software:id4portais:2022.837.002a:*:*:*:*:*:*:* | |
Vendors & Products |
Id4software
Id4software id4portais |
|
Metrics |
cvssV3_1
|
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2024-08-06T00:00:00
Updated: 2024-08-07T15:47:04.958Z
Reserved: 2023-08-22T00:00:00
Link: CVE-2023-40819
Vulnrichment
Updated: 2024-08-07T15:46:55.403Z
NVD
Status : Analyzed
Published: 2024-08-06T14:16:03.380
Modified: 2024-08-12T16:12:47.297
Link: CVE-2023-40819
Redhat
No data.