PT-2024-21777 · Cigesv2 · Cigesv2

Rubén López Herrera

·

Published

2024-03-22

·

Updated

2025-10-15

·

CVE-2024-2726

CVSS v3.1

6.1

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions CIGESv2 system (affected versions not specified)
Description The issue is a Stored Cross-Site Scripting (Stored-XSS) vulnerability affecting the CIGESv2 system. This allows an attacker to execute and store malicious javascript code in the application form without prior registration.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

XSS

Weakness Enumeration

Related Identifiers

CVE-2024-2726

Affected Products

Cigesv2