Back to Database
Status published
High
CVE-2024-55546
Stored Cross-Site Scripting
Vulnerability Description
Missing input validation in the ORing IAP-420 web-interface allows stored Cross-Site Scripting (XSS).This issue affects IAP-420 version 2.01e and below.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2024-55546
Credits & Attribution
The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:
- P. Chistè
- A. Falb
- M. Selinger
- M. Suchy
- P. Oberndorfer
- P. Maluenda
- D. Sagl
- M. Narbeshuber-Spletzer
- J. Springer
- P. Riedl
- C. Hierzer
- M. Pammer
References
Affected Vendor
ORing
View all reports →Affected Software
IAP-420
Vulnerable Versions:
0
Timeline
Official Publish:
December 10th, 2024
Last Modified:
November 3rd, 2025
Added to House:
July 22nd, 2026