VYPR
Medium severity5.4NVD Advisory· Published Feb 1, 2024· Updated Jun 17, 2026

CVE-2024-23941

CVE-2024-23941

Description

Cross-site scripting vulnerability exists in Group Office prior to v6.6.182, prior to v6.7.64 and prior to v6.8.31, which may allow a remote authenticated attacker to execute an arbitrary script on the web browser of the user who is logging in to the product.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

2
  • cpe:2.3:a:group-office:group_office:*:*:*:*:*:*:*:*
    Range: <6.6.182
  • Intermesh BV/Group Officev5
    Range: prior to v6.8.31

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.