CVE Database · CVE-2024-12756
CVSS v3.1
7.3
EPSS
0.27%
Published
Feb 11, 2025
Modified
Sep 30, 2025
Public PoC / Exploit
All weaponized →No public PoC or exploit code indexed for this CVE.
Links to public security research (Exploit-DB, Nuclei, Trickest, GitHub) for defensive use only.
Description
An HTML Injection vulnerability in Avaya Spaces may have allowed disclosure of sensitive information or modification of the page content seen by the user.
CVSS Vector
CVSS:3.1/AV:N/AC:H/PR:H/UI:R/S:C/C:H/I:H/A:NWeaknesses (CWE)
Affected Products (1)
References (1)