Cross Site Scripting vulnerability in Heartbeat Chat v.15.2.1 allows a remote attacker to execute arbitrary code via the setname function.
Project Subscriptions
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://github.com/minendie/POC_CVE-2024-40492 |
|
History
Wed, 09 Jul 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Heartbeat heartbeat
|
|
| CPEs | cpe:2.3:a:heartbeat:heartbeat:15.2.1:*:*:*:-:android:*:* cpe:2.3:a:heartbeat:heartbeat:15.2.1:*:*:*:-:iphone_os:*:* |
|
| Vendors & Products |
Heartbeat heartbeat
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-02T04:33:11.656Z
Reserved: 2024-07-05T00:00:00
Link: CVE-2024-40492
Updated: 2024-07-18T14:04:21.766Z
Status : Analyzed
Published: 2024-07-17T22:15:03.923
Modified: 2025-07-09T16:49:19.043
Link: CVE-2024-40492
No data.
OpenCVE Enrichment
No data.
Weaknesses