CVE-2024-36697 | Allworx System Software 9.1.9.12 Admin Login Page query.asp SessionID cross site scripting
A vulnerability classified as problematic has been found in Allworx System Software 9.1.9.12. Affected is an unknown function of the file query.asp of the component Admin Login Page. The manipulation of the argument SessionID leads to cross site scripting.
This vulnerability is traded as CVE-2024-36697. It is possible to launch the attack remotely. There is no exploit available.