CVE-2024-52882: Audiocodes One Voice Operations Center
Medium severity, CVSS 6.1. EPSS: 0.2% chance of exploitation in the next 30 days.
An issue was discovered in AudioCodes One Voice Operations Center (OVOC) before 8.4.582. Due to improper neutralization of input via the devices API, an attacker can inject malicious JavaScript code (XSS) to attack logged-in administrator sessions.
Affected products
- Audiocodes One Voice Operations Center: before 8.4.582 (fixed in 8.4.582)
Published 2025-02-07. Last modified 2026-06-17.