CVE Published: 08/10/2024 |
CVE Updated: 08/10/2024 |
CVE Year: 2024 Source: Payara |
Vendor: Payara Platform |
Product: Payara Server Status : PUBLISHED
CVE-2024-8215 Description
Improper Neutralization of Input During Web Page Generation (XSS or \'Cross-site Scripting\') vulnerability in Payara Platform Payara Server (Admin Console modules) allows Remote Code Inclusion.This issue affects Payara Server: from 5.20.0 before 5.68.0, from 6.0.0 before 6.19.0, from 6.2022.1 before 6.2024.10, from 4.1.2.191.1 before 4.1.2.191.51.