CVE-2024-12021
CVE-2024-12021: Coverity software impacted by stored Cross-Site Scripting (XSS). This vulnerability allows attackers to inject malicious scripts into administrative interfaces. Successful exploitation could lead to the compromise of local accounts managed by the Coverity platform. While the SVRS score is 30, indicating a low immediate threat, the potential for exploitation and account compromise still warrants attention. The stored XSS vulnerability allows attackers to inject malicious scripts that are persistently stored on the server, affecting any user who accesses the compromised page. The risk involves unauthorized access and potential data breaches. Despite a CVSS score of 0, the presence of the "In The Wild" tag highlights the need for patching Coverity installations promptly to mitigate potential risks.
Indicators of Compromise
Exploits
News
Social Media
Affected Software
References
CWE Details
CVE Radar
Real-time CVE Intelligence & Vulnerability Management Platform
CVE Radar provides comprehensive vulnerability intelligence by monitoring CVE databases, security advisories, and threat feeds. Get instant updates on new vulnerabilities, exploit details, and mitigation strategies specific to your assets.