Description
A vulnerability had been discovered in WinNMP 19.02 consisting of an XSS attack via index page in from, subject, text and hash parameters. This vulnerability could allow a remote user to send a specially crafted query to an authenticated user and steal their session details.
No analysis available yet.
Remediation
Vendor Solution
There is no reported solution at this time.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-46628 | A vulnerability had been discovered in WinNMP 19.02 consisting of an XSS attack via index page in from, subject, text and hash parameters. This vulnerability could allow a remote user to send a specially crafted query to an authenticated user and steal their session details. |
References
History
No history.
Subscriptions
No data.
Status: PUBLISHED
Assigner: INCIBE
Published:
Updated: 2024-08-01T21:11:12.713Z
Reserved: 2024-05-27T07:22:50.259Z
Link: CVE-2024-5406
Updated: 2024-08-01T21:11:12.713Z
Status : Deferred
Published: 2024-05-27T12:15:09.333
Modified: 2026-04-15T00:35:42.020
Link: CVE-2024-5406
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD