PT-2025-52681 · Mynet · Mynet

Published

2025-12-22

·

Updated

2025-12-22

·

CVE-2024-27708

CVSS v3.1

9.6

Critical

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions MyNET versions 26.06 and earlier
Description An iframe injection issue exists that allows a remote attacker to execute arbitrary code. The issue is related to the src parameter.
Recommendations Versions prior to 26.06 should be updated.

Exploit

Fix

Special Elements Injection

Weakness Enumeration

Related Identifiers

CVE-2024-27708

Affected Products

Mynet