VYPR
Unrated severityNVD Advisory· Published Jan 17, 2025· Updated Jan 21, 2025

ETIC Telecom Remote Access Server (RAS) Cross-site Scripting

CVE-2024-26157

Description

All versions of ETIC Telecom Remote Access Server (RAS) prior to 4.5.0 are vulnerable to reflected cross site scripting (XSS) attacks in get view method under view parameter. The ETIC RAS web server uses dynamic pages that get their input from the client side and reflect the input in their response to the client.

Affected products

1

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.