An issue was discovered in Znuny 7.0.1 through 7.0.16 where the ticket detail view in the customer front allows the execution of external JavaScript.

Subscriptions

Vendors Products

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Wed, 25 Feb 2026 20:15:00 +0000

Type Values Removed Values Added
CPEs cpe:2.3:a:znuny:znuny:7.0.1:*:*:*:-:*:*:*
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Tue, 02 Sep 2025 21:30:00 +0000

Type Values Removed Values Added
First Time appeared Znuny
Znuny znuny
CPEs cpe:2.3:a:znuny:znuny:*:*:*:*:-:*:*:*
Vendors & Products Znuny
Znuny znuny

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-02T02:13:39.104Z

Reserved: 2024-04-15T00:00:00.000Z

Link: CVE-2024-32492

cve-icon Vulnrichment

Updated: 2024-08-02T02:13:39.104Z

cve-icon NVD

Status : Analyzed

Published: 2024-04-29T17:15:19.243

Modified: 2025-09-02T21:19:51.753

Link: CVE-2024-32492

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses