VYPR
Unrated severityNVD Advisory· Published Jan 17, 2025· Updated Jan 21, 2025

ETIC Telecom Remote Access Server (RAS) Cross-site Scripting

CVE-2024-26156

Description

All versions of ETIC Telecom Remote Access Server (RAS) prior to 4.5.0 are vulnerable to reflected cross site scripting (XSS) attacks in the method parameter. The ETIC RAS web server uses dynamic pages that gets their input from the client side and reflects the input in its response to the client.

Affected products

1

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.