The reflective cross-site scripting vulnerability found in ALC WebCTRL and Carrier i-Vu in versions older than 8.0 affects login panels allowing a
malicious actor to compromise the client browser
.
Metrics
Affected Vendors & Products
References
History
Thu, 27 Nov 2025 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Carrier
Carrier automatedlogic Webctrl Carrier i-vu |
|
| Vendors & Products |
Carrier
Carrier automatedlogic Webctrl Carrier i-vu |
Thu, 27 Nov 2025 01:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | The reflective cross-site scripting vulnerability found in ALC WebCTRL and Carrier i-Vu in versions older than 8.0 affects login panels allowing a malicious actor to compromise the client browser . | |
| Title | ALC WebCTRL Carrier i-Vu Reflected Cross-Site Scripting | |
| Weaknesses | CWE-79 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: Carrier
Published: 2025-11-27T01:02:48.953Z
Updated: 2025-11-27T01:02:48.953Z
Reserved: 2024-05-30T17:38:50.120Z
Link: CVE-2024-5540
No data.
Status : Received
Published: 2025-11-27T01:15:46.300
Modified: 2025-11-27T01:15:46.300
Link: CVE-2024-5540
No data.