Vulnerability Description
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Interfacelab Media Cloud for Amazon S3, Imgix, Google Cloud Storage, DigitalOcean Spaces and more allows Stored XSS.This issue affects Media Cloud for Amazon S3, Imgix, Google Cloud Storage, DigitalOcean Spaces and more: from n/a through 4.5.24.
CVSS Score
MEDIUM
Related Weaknesses (CWE)
References
- https://patchstack.com/database/vulnerability/ilab-media-tools/wordpress-media-c
- https://patchstack.com/database/vulnerability/ilab-media-tools/wordpress-media-c
FAQ
What is CVE-2024-29795?
CVE-2024-29795 is a vulnerability with a CVSS score of 6.5 (MEDIUM). Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Interfacelab Media Cloud for Amazon S3, Imgix, Google Cloud Storage, DigitalOcean Spaces and more ...
How severe is CVE-2024-29795?
CVE-2024-29795 has been rated MEDIUM with a CVSS base score of 6.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2024-29795?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.