Vulnerability Description
A reflected cross-site scripting (XSS) vulnerability exists in PaperCut NG/MF. This issue can be used to execute specially created JavaScript payloads in the browser. A user must click on a malicious link for this issue to occur.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Papercut | Papercut Mf | < 24.1.1 |
| Papercut | Papercut Ng | < 24.1.1 |
Related Weaknesses (CWE)
References
FAQ
What is CVE-2024-9672?
CVE-2024-9672 is a vulnerability with a CVSS score of 5.4 (MEDIUM). A reflected cross-site scripting (XSS) vulnerability exists in PaperCut NG/MF. This issue can be used to execute specially created JavaScript payloads in the browser. A user must click on a malicious ...
How severe is CVE-2024-9672?
CVE-2024-9672 has been rated MEDIUM with a CVSS base score of 5.4/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2024-9672?
Check the references section above for vendor advisories and patch information. Affected products include: Papercut Papercut Mf, Papercut Papercut Ng.