| Summary | A stored cross-site scripting (XSS) vulnerability in the Create Customer API in Incognito Service Activation Center (SAC) UI v14.11 allows authenticated attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into the lastName parameter. |
|---|---|
| Publication Date | Nov. 14, 2024, 5:15 a.m. |
| Registration Date | Nov. 14, 2024, 12:01 p.m. |
| Last Update | Nov. 19, 2024, 5:35 a.m. |