PT-2024-21784 · Cigesv2 · Cigesv2

Rubén López Herrera

·

Published

2024-03-22

·

Updated

2025-10-15

·

CVE-2024-2727

CVSS v3.1

6.1

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions CIGESv2 system (affected versions not specified)
Description The issue allows an attacker to inject arbitrary code and modify elements of the website and email confirmation message. This is due to an HTML injection vulnerability affecting the CIGESv2 system.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

XSS

Weakness Enumeration

Related Identifiers

CVE-2024-2727

Affected Products

Cigesv2