Medium severity6.1NVD Advisory· Published Sep 25, 2024· Updated Jun 17, 2026
CVE-2024-46655
CVE-2024-46655
Description
A reflected cross-site scripting (XSS) vulnerability in Ellevo 6.2.0.38160 allows attackers to execute arbitrary code in the context of a user's browser via a crafted payload or URL.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2Patches
Vulnerability mechanics
References
2- csflabs.github.io/cve/2024/09/24/cve-2024-46655-Cross-Site-Scripting-%28XSS%29-%28Reflected%29-in-Ellevo-application.htmlnvdExploitThird Party Advisory
- ellevo.comnvdProduct
News mentions
0No linked articles in our index yet.