Description
Cross-site scripting vulnerability in Badger Meter Monitool that affects versions up to 4.6.3 and earlier. This vulnerability allows a remote attacker to send a specially crafted javascript payload to an authenticated user and partially hijack their browser session.
No analysis available yet.
Remediation
Vendor Solution
The vulnerabilities have been resolved in versions 4.7 and later.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-17064 | Cross-site scripting vulnerability in Badger Meter Monitool that affects versions up to 4.6.3 and earlier. This vulnerability allows a remote attacker to send a specially crafted javascript payload to an authenticated user and partially hijack their browser session. |
References
History
Wed, 26 Feb 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Badgermeter
Badgermeter monitool |
|
| CPEs | cpe:2.3:a:badgermeter:monitool:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Badgermeter
Badgermeter monitool |
Status: PUBLISHED
Assigner: INCIBE
Published:
Updated: 2024-08-22T20:45:53.513Z
Reserved: 2024-02-07T10:22:56.060Z
Link: CVE-2024-1304
Updated: 2024-08-01T18:33:25.477Z
Status : Analyzed
Published: 2024-03-12T16:15:07.793
Modified: 2025-02-26T15:15:08.143
Link: CVE-2024-1304
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD