CNNVD-202509-199 Information

CNNVD ID

CNNVD-202509-199

CVE-2024-12972

  • CNNVD Published: 2025-09-02

Description (Chinese)

Akinsoft OctoCloud是土耳其Akinsoft公司的一个具有管理财务交易、记录收据和存货、开具发票以及生成报告功能的 在线平台。 Akinsoft OctoCloud s1.09.01至v1.11.01之前版本存在跨站脚本漏洞,该漏洞源于输入中和不当,可能导致跨站脚本攻击。

Description (English)

Akinsoft OctoClaud is an online platform of Akinsoft, Turkey, that manages financial transactions, records receipts and inventories, issues invoices and generates reports. Prior to Akinsoft OctoClaud s1.09.01 to v1.11.01, there was a cross-site script loophole, which originated in inappropriate input and could result in a cross-site script attack.

Hazard Level

High

Vulnerability Type

跨站脚本

Affected Vendor

Akinsoft

Published

2025-09-02

Last Modified

2026-02-24

References

https://www.usom.gov.tr/bildirim/tr-25-0203 https://access.redhat.com/security/cve/cve-2024-12972 https://nvd.nist.gov/vuln/detail/CVE-2024-12972

Patch

https://octocloud.akinsoft.com.tr/en/

Share on: