PT-2024-20614 · Jgadbois · Calculatorpro Calculators

Dimas Maulana

·

Published

2024-02-04

·

Updated

2024-02-07

·

CVE-2024-24847

CVSS v3.1

7.1

High

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:L
Name of the Vulnerable Software and Affected Versions jgadbois CalculatorPro Calculators versions 1.1.7 and earlier
Description The issue affects jgadbois CalculatorPro Calculators, allowing Reflected XSS due to improper neutralization of input during web page generation. This is a Cross-site Scripting vulnerability.
Recommendations For versions 1.1.7 and earlier, update to a version that fixes the improper neutralization of input during web page generation to prevent Reflected XSS attacks. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

XSS

Weakness Enumeration

Related Identifiers

CVE-2024-24847

Affected Products

Calculatorpro Calculators