PT-2024-38993 · Abcd2 · Abcd2

·

CVE-2024-8411

·

Published

2024-09-04

·

Updated

2026-02-26

CVSS v3.1

3.5

Low

VectorAV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N
Name of the Vulnerable Software and Affected Versions ABCD ABCD2 versions through 2.2.0-beta-1
Description A problematic issue exists in the processing of the /buscar integrada.php file. Manipulation of the Sub Expresion parameter can lead to cross site scripting. The attack can be initiated remotely. The exploit has been publicly disclosed. The developer states that the script was completely redesigned after this version.
Recommendations Versions prior to 2.2.0-beta-1 are affected. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Code Injection

XSS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2024-8411

Affected Products

Abcd2