PoC Index

CVE-2024-32405

LOW 2.6EPSS 0.5%

Cross Site Scripting vulnerability in inducer relate before v.2024.1 allows a remote attacker to escalate privileges via a crafted payload to the Answer field of InlineMultiQuestion parameter on Exam function.

CVSS v3.1
2.6 LOWCVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:U/C:L/I:N/A:N
EPSS
0.50% chance of exploitation in the next 30 days, 41th percentile
Published
2024-04-22
Updated
2025-02-05

Proof-of-concept exploits (1)

References

Related