Cross-Site Scripting Vulnerability in Task Manager App by Burak Sevben
CVE-2024-25219
6.1MEDIUM
Key Information:
- Vendor
- CVE Published:
- 14 February 2024
What is CVE-2024-25219?
A cross-site scripting (XSS) vulnerability exists in Task Manager App v1.0, enabling attackers to inject malicious scripts or HTML into the Task Name parameter. If exploited, this can result in unauthorized actions taken on behalf of users, leading to data theft and user session hijacking.
References
CVSS V3.1
Score:
6.1
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Changed
Timeline
Vulnerability published
Vulnerability Reserved