Home

Description

Cross-site scripting vulnerability exists in VK All in One Expansion Unit versions prior to 9.100.1.0. If this vulnerability is exploited, an arbitrary script may be executed on the web browser of the user who is accessing the web site using the product.

PUBLISHED Reserved 2024-11-06 | Published 2024-11-13 | Updated 2024-11-13 | Assigner jpcert




MEDIUM: 4.8CVSS:3.0/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N

Problem types

Cross-site scripting (XSS)

Product status

prior to 9.100.1.0
affected

References

vektor-inc.co.jp/...ansion-unit-version-9-100-0-and-earlier/

jvn.jp/en/jp/JVN05136799/

cve.org (CVE-2024-52268)

nvd.nist.gov (CVE-2024-52268)

Download JSON

Data based on CVE®. Copyright © 1999-2025, The MITRE Corporation. All rights reserved.