CVE-2024-50705: Uniguest Tripleplay

High severity, CVSS 7.1. EPSS: 0.2% chance of exploitation in the next 30 days.

Unauthenticated reflected cross-site scripting (XSS) vulnerability in Uniguest Tripleplay before 24.2.1 allows remote attackers to execute arbitrary scripts via the page parameter.

Affected products

  • Uniguest Tripleplay: before 24.1.2 (fixed in 24.1.2); version 24.2 only

Published 2025-03-04. Last modified 2026-06-17.