Back to Database
Status published
Medium
CVE-2024-24571
facileManager Systemic Cross-Site Scripting (XSS)
Vulnerability Description
facileManager is a modular suite of web apps built with the sysadmin in mind. For the facileManager web application versions 4.5.0 and earlier, we have found that XSS was present in almost all of the input fields as there is insufficient input validation.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2024-24571
Credits & Attribution
No credits recorded in the NVD database.
References
Affected Vendor
WillyXJ
View all reports →Affected Software
facileManager
Vulnerable Versions:
<= 4.5.0
Timeline
Official Publish:
January 31st, 2024
Last Modified:
May 29th, 2025
Added to House:
July 22nd, 2026
CVSS Vectors
V3:
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N