CVE-2024-52882 – AudioCodes One Voice Operations Center XSS

The following table lists the changes that have been made to the
CVE-2024-52882 vulnerability over time.

Vulnerability history details can be useful for understanding the evolution
of a vulnerability, and for identifying the most recent changes that may
impact the vulnerability’s severity, exploitability, or other characteristics.

  • New CVE Received
    by [email protected]

    Feb. 07, 2025

    Action Type Old Value New Value
    Added Description An issue was discovered in AudioCodes One Voice Operations Center (OVOC) before 8.4.582. Due to improper neutralization of input via the devices API, an attacker can inject malicious JavaScript code (XSS) to attack logged-in administrator sessions.
    Added Reference https://www.audiocodes.com/solutions-products/products/management-products-solutions/one-voice-operations-center
    Added Reference https://www.syss.de/fileadmin/dokumente/Publikationen/Advisories/SYSS-2024-076.txt
Share the Post:

Related Posts