Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-48831 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Kion Computer KION Exchange Programs Software allows Reflected XSS.This issue affects KION Exchange Programs Software: before 1.21.9092.29966. |
| Link | Providers |
|---|---|
| https://www.usom.gov.tr/bildirim/tr-24-1867 |
|
Mon, 25 Nov 2024 15:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Kion Computer KION Exchange Programs Software allows Reflected XSS.This issue affects KION Exchange Programs Software: through 21.11.2024. NOTE: The vendor was contacted early about this disclosure but did not respond in any way. | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Kion Computer KION Exchange Programs Software allows Reflected XSS.This issue affects KION Exchange Programs Software: before 1.21.9092.29966. |
Thu, 21 Nov 2024 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 21 Nov 2024 14:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Kion Computer KION Exchange Programs Software allows Reflected XSS.This issue affects KION Exchange Programs Software: through 21.11.2024. NOTE: The vendor was contacted early about this disclosure but did not respond in any way. | |
| Title | Reflected XSS in Kion Computer's KION Exchange Programs Software | |
| Weaknesses | CWE-79 | |
| References |
| |
| Metrics |
cvssV3_1
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: TR-CERT
Published:
Updated: 2024-11-25T14:50:41.333Z
Reserved: 2024-07-26T13:10:40.637Z
Link: CVE-2024-7130
Updated: 2024-11-21T13:58:16.752Z
Status : Deferred
Published: 2024-11-21T14:15:19.023
Modified: 2026-04-15T00:35:42.020
Link: CVE-2024-7130
No data.
OpenCVE Enrichment
No data.
EUVD