CVE-2024-28741: Engindemirbilek NORTHSTARC2

High severity, CVSS 8.8. EPSS: 78.2% chance of exploitation in the next 30 days.

Cross Site Scripting vulnerability in EginDemirbilek NorthStar C2 v1 allows a remote attacker to execute arbitrary code via the login.php component.

Affected products

Published 2024-04-06. Last modified 2026-06-17.