CVE-2024-58322 - CERT CVE
ID CVE-2024-58322
Sažetak A stored cross-site scripting vulnerability in Kentico Xperience allows attackers to inject malicious code into shipping options configuration. This could lead to potential theft of sensitive data by executing malicious scripts in users' browsers.
Reference
CVSS
Base: 4.6
Impact: 2.5
Exploitability:2.1
Pristup
VektorSloženostAutentikacija
NETWORK LOW LOW
Impact
PovjerljivostCjelovitostDostupnost
LOW LOW NONE
CVSS vektor CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:N
Zadnje važnije ažuriranje 19-12-2025 - 18:00
Objavljeno 18-12-2025 - 20:15