Vulnerability Description
In Leantime 3.0.6, a Cross-Site Scripting vulnerability exists within the ticket creation and modification functionality, allowing attackers to inject malicious JavaScript code into the title field of tickets (also known as to-dos). This stored XSS vulnerability can be exploited to perform Server-Side Request Forgery (SSRF) attacks.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Leantime | Leantime | 3.0.6 |
Related Weaknesses (CWE)
References
- https://drive.proton.me/urls/35CKB8RV04#sEubCKVOuXqtBroken Link
- https://github.com/Leantime/leantime/blob/264a7dbc2c9b18f574821bf27dd568a287ee84Product
- https://github.com/dead1nfluence/Leantime-POC/blob/main/README.mdExploitThird Party Advisory
- https://drive.proton.me/urls/35CKB8RV04#sEubCKVOuXqtBroken Link
- https://github.com/Leantime/leantime/blob/264a7dbc2c9b18f574821bf27dd568a287ee84Product
- https://github.com/dead1nfluence/Leantime-POC/blob/main/README.mdExploitThird Party Advisory
- https://www.vicarius.io/vsociety/posts/analyzing-leantime-xss-for-the-fun-time-dExploitThird Party Advisory
FAQ
What is CVE-2024-27477?
CVE-2024-27477 is a vulnerability with a CVSS score of 6.1 (MEDIUM). In Leantime 3.0.6, a Cross-Site Scripting vulnerability exists within the ticket creation and modification functionality, allowing attackers to inject malicious JavaScript code into the title field of...
How severe is CVE-2024-27477?
CVE-2024-27477 has been rated MEDIUM with a CVSS base score of 6.1/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2024-27477?
Check the references section above for vendor advisories and patch information. Affected products include: Leantime Leantime.