PT-2025-3264 · Enituretechnology · Distance Based Shipping Calculator
Lvt-Tholv2K
·
Published
2025-01-13
·
Updated
2025-01-16
·
CVE-2024-56301
CVSS v3.1
7.1
High
| Vector | AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:L |
The vulnerable software is Eniture Technology Distance Based Shipping Calculator, with versions ranging from n/a to 2.0.21.
The vulnerability is an improper neutralization of input during web page generation, also known as Cross-site Scripting (XSS), which allows reflected XSS attacks.
There is a public reference to this vulnerability as CVE-2024-56301.
Unfortunately, there is no information provided about whether this vulnerability has a public exploit or if it has been exploited by attackers, nor is there information on how many Internet users could be affected by the exploitation of this vulnerability.
However, it's important for users of the affected versions to be aware of this issue and consider updating or patching their software to prevent potential attacks 🚨.
#EnitureTechnology #DistanceBasedShippingCalculator #CrossSiteScripting #XSS #CVE202456301 #ReflectedXSS #Vulnerability #Security #Eniture
Fix
XSS
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Distance Based Shipping Calculator