CVE Published: 02/09/2024 |
CVE Updated: 03/09/2024 |
CVE Year: 2024 Source: TR-CERT |
Vendor: NAC Telecommunication Systems Inc. |
Product: NACPremium Status : PUBLISHED
CVE-2024-6920 Description
Improper Neutralization of Input During Web Page Generation (\'Cross-site Scripting\') vulnerability in NAC Telecommunication Systems Inc. NACPremium allows Stored XSS.This issue affects NACPremium: through 01082024.
CWE-ID: CWE-79 CWE Name: CWE-79 Improper Neutralization of Input During Web Page Generation (
Cross-site Scripting
) Source: NAC Telecommunication Systems Inc.
Common Attack Pattern Enumeration and Classification (CAPEC)