PT-2024-25975 · Unknown · Gomo Gee Search Plus

Sharanabasappa

·

Published

2024-05-08

·

Updated

2024-05-08

·

CVE-2024-34560

CVSS v3.1

5.9

Medium

VectorAV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:L
Name of the Vulnerable Software and Affected Versions GOMO gee Search Plus versions 1.4.4 and earlier
Description The issue affects GOMO gee Search Plus, allowing Stored XSS due to improper neutralization of input during web page generation. This can lead to cross-site scripting attacks.
Recommendations For versions 1.4.4 and earlier, update to a version later than 1.4.4 to resolve the issue. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

XSS

Weakness Enumeration

Related Identifiers

CVE-2024-34560

Affected Products

Gomo Gee Search Plus