CVE-2024-5961: Trol Intermedia Sp. Z O.o. Sp. K 2clickportal

Medium severity, CVSS 5.3. EPSS: 1.3% chance of exploitation in the next 30 days.

Improper neutralization of input during web page generation vulnerability in 2ClickPortal software allows reflected cross-site scripting (XSS). An attacker might trick somebody into using a crafted URL, which will cause a script to be run in user's browser. This issue affects 2ClickPortal software versions from 7.2.31 through 7.6.4.

Affected products

Published 2024-06-14. Last modified 2026-06-17.