PT-2026-85393 · Eleveo · Eleveo Quality Management
CVSS v2.0
4.0
Medium
| Vector | AV:N/AC:L/Au:S/C:N/I:P/A:N |
Name of the Vulnerable Software and Affected Versions
Eleveo Quality Management version 9.7.0
Description
A cross site scripting issue exists within the Conversation Review component. This flaw allows remote exploitation through the manipulation of unknown code, enabling an attacker to execute malicious scripts in the context of a user's session.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
XSS
Code Injection
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Eleveo Quality Management