Medium severity6.1NVD Advisory· Published Oct 30, 2024· Updated Jun 17, 2026
CVE-2024-48648
CVE-2024-48648
Description
A Reflected Cross-Site Scripting (XSS) vulnerability exists in the Sage 1000 v 7.0.0. This vulnerability allows attackers to inject malicious scripts into URLs, which are reflected back by the server in the response without proper sanitization or encoding.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:sage:sage_frp_1000:7.0.0:*:*:*:*:*:*:*
- Sage/Sage 1000description
Patches
Vulnerability mechanics
References
1- github.com/hx381/Sage-1000-v7.0.0-Exploit/blob/main/README.mdnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.