CVE-2024-45712

SolarWinds Serv-U is vulnerable to a client-side cross-site scripting (XSS) vulnerability. The vulnerability can only be performed by an authenticated account, on the local machine, from the local browser session. Therefore the risk is very low.
Configurations

No configuration.

History

15 Apr 2025, 18:39

Type Values Removed Values Added
Summary
  • (es) SolarWinds Serv-U es vulnerable a una vulnerabilidad de client-side cross-site scripting (XSS). Esta vulnerabilidad solo puede ejecutarse mediante una cuenta autenticada, en el equipo local y desde la sesión del navegador local. Por lo tanto, el riesgo es muy bajo.

15 Apr 2025, 09:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-04-15 09:15

Updated : 2025-04-15 18:39


NVD link : CVE-2024-45712

Mitre link : CVE-2024-45712

CVE.ORG link : CVE-2024-45712


JSON object : View

Products Affected

No product.

CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')