Home

Description

A reflected cross-site scripting (XSS) vulnerability in MyNET up to v26.08 allows attackers to execute arbitrary code in the context of a user's browser via injecting a crafted payload into the parameter HTTP.

PUBLISHED Reserved 2024-07-05 | Published 2025-12-24 | Updated 2025-12-24 | Assigner mitre

References

www.airc.pt/solucoes-servicos/solucoes?segment=MYN

miguelsantareno.github.io/airc_exploit.txt

cve.org (CVE-2024-40317)

nvd.nist.gov (CVE-2024-40317)

Download JSON

Data based on CVE®. Copyright © 1999-2025, The MITRE Corporation. All rights reserved.