PT-2024-38993 · Abcd2 · Abcd2

Peritocibernetico

·

Published

2024-09-04

·

Updated

2026-02-26

·

CVE-2024-8411

CVSS v3.1

4.3

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N
Name of the Vulnerable Software and Affected Versions ABCD ABCD2 versions through 2.2.0-beta-1
Description A problematic issue exists in the processing of the /buscar integrada.php file. Manipulation of the Sub Expresion parameter can lead to cross site scripting. The attack can be initiated remotely. The exploit has been publicly disclosed. The developer states that the script was completely redesigned after this version.
Recommendations Versions prior to 2.2.0-beta-1 are affected. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

XSS

Code Injection

Weakness Enumeration

Related Identifiers

CVE-2024-8411

Affected Products

Abcd2