CVE-2024-41513

A reflected cross-site scripting (XSS) vulnerability in "Artikel.aspx" in CADClick v1.11.0 and before allows remote attackers to inject arbitrary web script or HTML via the "searchindex" parameter.
CVSS

No CVSS.

References
Configurations

Configuration 1 (hide)

cpe:2.3:a:4pace:cadclick:1.11.0:*:*:*:*:*:*:*

History

02 Jun 2025, 17:40

Type Values Removed Values Added
First Time 4pace
4pace cadclick
CPE cpe:2.3:a:4pace:cadclick:1.11.0:*:*:*:*:*:*:*
References () http://cadclick.de/ - () http://cadclick.de/ - Product
References () http://kimweb.de/ - () http://kimweb.de/ - Product
References () https://piuswalter.de/blog/multiple-critical-vulnerabilities-in-cadclick/ - () https://piuswalter.de/blog/multiple-critical-vulnerabilities-in-cadclick/ - Exploit, Third Party Advisory

04 Oct 2024, 21:15

Type Values Removed Values Added
References
  • () http://cadclick.de/ -
  • () http://kimweb.de/ -

04 Oct 2024, 18:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-10-04 18:15

Updated : 2025-06-02 17:40


NVD link : CVE-2024-41513

Mitre link : CVE-2024-41513


JSON object : View

Products Affected

4pace

  • cadclick
CWE

No CWE.