NA
CVSSv3

CVE-2024-49707

CVSSv4: 5.1 | CVSSv3: NA | CVSSv2: NA | VMScore: 610 | EPSS: 0.00062 | KEV: Not Included
Published: 14/04/2025 Updated: 15/04/2025

Vulnerability Summary

Reflected XSS Vulnerability in SoftCOM iKSORIS Internet Starter Module

Internet Starter, a module in the SoftCOM iKSORIS system, has a Reflected Cross Site Scripting (XSS) vulnerability. An attacker can trick a user into submitting a password reset form that contains a malicious script. When the user fills out the form, the script can run in their browser context. This security issue has been addressed and fixed in version 79.0 of the software.

Vulnerable Product Search on Vulmon Subscribe to Product

softcom iksoris