CVE-2024-24275

Source
https://nvd.nist.gov/vuln/detail/CVE-2024-24275
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2024-24275.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2024-24275
Published
2024-03-05T23:15:07Z
Modified
2025-10-21T17:35:26.555916Z
Severity
  • 9.6 (Critical) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H CVSS Calculator
Summary
[none]
Details

Cross Site Scripting vulnerability in Teamwire Windows desktop client v.2.0.1 through v.2.4.0 allows a remote attacker to obtain sensitive information via a crafted payload to the global search function.

References

Affected packages

Git / github.com/teamwire/platform

Affected ranges

Type
GIT
Repo
https://github.com/teamwire/platform
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Fixed

Affected versions

1.*

1.0
1.01
1.02
1.04
1.05
1.06
1.07
1.08
1.09
1.10
1.11
1.12
1.13
1.14
1.15
1.16
1.17
1.18
1.19
1.20
1.21

2.*

2.0.0
2.1.0
2.2.0
2.2.1
2.2.2
2.2.3
2.2.4
2.2.5
2.3.0
2.3.1
2.3.2

Other

2018-09
2019-01
2019-02
2019-03
2019-04
2019-05
2019-06
2019-07
2019-09
2019-10
2019-11

2019-01.*

2019-01.1

2019-05.*

2019-05.1
2019-05.2

2019-07.*

2019-07.1
2019-07.2
2019-07.3

2019-10.*

2019-10.1