CVE-2024-34707 | Nautobot up to 1.6.21/2.2.3 /admin/constance/config/ BANNER_TOP/BANNER_BOTTOM/BANNER_LOGIN cross site scripting
A vulnerability described as problematic has been identified in Nautobot up to 1.6.21/2.2.3. This affects an unknown part of the file /admin/constance/config/. The manipulation of the argument BANNER_TOP/BANNER_BOTTOM/BANNER_LOGIN results in cross site scripting.
This vulnerability is cataloged as CVE-2024-34707. The attack may be launched remotely. There is no exploit available.
Upgrading the affected component is recommended.