vendor:
Comptel Provisioning and Activation
by:
Unknown
7.5
CVSS
HIGH
Cross-Site Scripting
79
CWE
Product Name: Comptel Provisioning and Activation
Affected Version From: Unknown
Affected Version To: Unknown
Patch Exists: Unknown
Related CWE:
CPE: Unknown
Platforms Tested: Unknown
Unknown
Cross-Site Scripting Vulnerability in Comptel Provisioning and Activation
The application fails to properly sanitize user-supplied input, leading to a cross-site scripting vulnerability. An attacker can execute arbitrary script code in the browser of an unsuspecting user, potentially stealing authentication credentials and launching further attacks.
Mitigation:
To mitigate this vulnerability, proper input validation and sanitization should be implemented to prevent the execution of arbitrary script code.