PT-2024-28686 · Unknown · R74N Sandboxels

Published

2024-06-28

·

Updated

2024-07-11

·

CVE-2024-39828

CVSS v3.1

6.1

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions R74n Sandboxels versions 1.9 through 1.9.5
Description The issue allows for XSS via a message in a modified saved-game file. This was fixed in a hotfix to 1.9.5 on 2024-06-29.
Recommendations For versions 1.9 through 1.9.5, apply the hotfix released on 2024-06-29 to resolve the issue.

Fix

XSS

Weakness Enumeration

Related Identifiers

CVE-2024-39828

Affected Products

R74N Sandboxels