mirror of
https://github.com/0xMarcio/cve.git
synced 2025-11-28 18:48:49 +00:00
916 B
916 B
CVE-2024-52951
Description
Stored Cross-Site Scripting in the Access Request History in Omada Identity before version 15 update 1 allows an authenticated attacker to execute arbitrary code in the browser of a victim via a specially crafted link or by viewing a manipulated Access Request History
POC
Reference
- https://r.sec-consult.com/omada
- https://sec-consult.com/vulnerability-lab/advisory/stored-cross-site-scripting-in-omada-identity/
Github
No PoCs found on GitHub currently.