← Back to CVE List

CVE-2024-50857

Published: 2025-01-14T22:15Z
Last Modified: 2025-01-15T20:15Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
The ip_do_job request in GestioIP v3.5.7 is vulnerable to Cross-Site Scripting (XSS). It allows data exfiltration and enables CSRF attacks. The vulnerability requires specific user permissions within the application to exploit successfully. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt