CVE-2024-5961: Trol Intermedia Sp. Z O.o. Sp. K 2clickportal
Medium severity, CVSS 5.3. EPSS: 1.3% chance of exploitation in the next 30 days.
Improper neutralization of input during web page generation vulnerability in 2ClickPortal software allows reflected cross-site scripting (XSS). An attacker might trick somebody into using a crafted URL, which will cause a script to be run in user's browser. This issue affects 2ClickPortal software versions from 7.2.31 through 7.6.4.
Affected products
- Trol Intermedia Sp. Z O.o. Sp. K 2clickportal: from 7.2.31, up to and including 7.6.4
Published 2024-06-14. Last modified 2026-06-17.