PT-2024-23758 · Unknown · Hacklog Down As Pdf

Dimas Maulana

·

Published

2024-03-31

·

Updated

2024-04-01

·

CVE-2024-31090

CVSS v3.1

7.1

High

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:L
Name of the Vulnerable Software and Affected Versions Hacklog Down As PDF versions 2.3.6 and earlier
Description The issue affects the Hacklog Down As PDF software, allowing for Reflected XSS due to improper neutralization of input during web page generation.
Recommendations For versions 2.3.6 and earlier, update to a version later than 2.3.6 to resolve the issue.

Fix

XSS

Weakness Enumeration

Related Identifiers

CVE-2024-31090

Affected Products

Hacklog Down As Pdf