• Skip to primary navigation
  • Skip to main content
  • Skip to footer
Kurmi Software

Kurmi Software

Unified Communication - Automate & Simplify the management

  • Contact
  • Support
  • Request a Demo
  • Search
  • English
  • Products
    • Kurmi Provisioning Suite for Enterprises
    • Kurmi Provisioning Suite for MSPs
  • Use Cases
    • User Provisioning
    • Number Management
    • Migration
    • Role-Based Access Control
    • Replace Cisco Prime Collaboration Provisioning
  • Industries
    • Financial Services
    • Government
    • Healthcare
    • Higher Education
    • Managed Service Providers
  • Tech
      • Cisco
        • Webex Suite
        • Cisco Unified Communications Suite
        • Cisco Contact Center
        • Cisco Hosted Collaboration Solution (HCS)
      • Microsoft
        • Microsoft Teams and Teams Phone
        • Skype for Business
      • Avaya
        • Avaya Aura
        • Avaya Aura Call Center Elite
      • Zoom
      • ServiceNow
      • SBCs
      • Kurmi SDK
  • Partners
    • Partners
    • Become a Partner
    • Cisco SolutionsPlus
    • Microsoft IP Co-Sell
  • About
    • About Us
    • Careers
    • Press Releases
    • Media Coverage
    • Events
  • Resources
    • UC Management Guide
    • Interactive Demos
    • Blog
    • Webinars
    • White Papers
    • Videos
    • Case Studies
    • View All Resources

CVE-2024-54451:

Description

  • A cross-site scripting (XSS) vulnerability in the graphicCustomization.do page in Kurmi Provisioning Suite before 7.9.0.38, 7.10.x through 7.10.0.18, and 7.11.x through 7.11.0.15 allows remote attackers (authenticated as system administrators) to inject arbitrary web script or HTML via the COMPONENT_fields(htmlTitle) field, which is rendered in other pages of the application for all users (if the graphical customization has been activated by a super-administrator).

Vulnerability Type

  • Cross Site Scripting (XSS)

Footer

  • Products
    • Kurmi Provisioning Suite for Enterprises
    • Kurmi Provisioning Suite for MSPs
    • Professional Services
  • Use Cases
    • User Provisioning
    • Number Management
    • Migration
    • Role-Based Access Control
    • Replace Cisco Prime Collaboration Provisioning (PCP)
  • Industries
    • Financial Services
    • Government
    • Healthcare
    • Managed Service Providers
  • Supported Tech
    • Cisco
    • Microsoft
    • Avaya
    • Zoom
    • ServiceNow
    • SBCs
    • Kurmi SDK
  • Partners
    • Become a Partner
    • Cisco SolutionsPlus
    • Microsoft IP Co-Sell
  • About
    • About Us
    • Careers
    • Press Releases
    • Media Coverage
    • Events
  • Resources
    • UC Management Guide
    • Interactive Demos
    • Blog
    • Webinars
    • Case Studies
    • View All Resources

© 2025 Kurmi Software. All rights reserved.

Privacy Policy Sitemap
LinkedIn Twitter YouTube
logo
  • Products
    • Kurmi Provisioning Suite for Enterprises
    • Kurmi Provisioning Suite for MSPs
  • Use Cases
    • User Provisioning
    • Number Management
    • Migration
    • Role-Based Access Control
    • Replacing Cisco Prime Collaboration Provisioning
  • Industries
    • Financial Services
    • Government
    • Healthcare
    • Higher Education
    • Managed Service Providers
  • Supported Tech
    • Cisco
      • Webex Suite
      • Cisco Unified Communications Suite
      • Cisco Contact Center
      • Cisco Broadworks
      • Cisco Hosted Collaboration Solution (HCS)
    • Microsoft
      • Microsoft Teams and Teams Phone
      • Skype for Business
    • Avaya
      • Avaya Aura
      • Avaya Aura Call Center Elite
    • Zoom
    • ServiceNow
    • SBCs
    • Kurmi SDK
  • Partners
    • Partners
    • Become a Partner
    • Cisco SolutionsPlus
    • Microsoft IP Co-Sell
  • About
    • About Us
    • Careers
    • Press Releases
    • Media Coverage
    • Events
  • Resources
    • UC Management Guide
    • Interactive Demos
    • Blog
    • Webinars
    • White Papers
    • Videos
    • Case Studies
    • View All Resources
  • Contact
  • Support
  • Request a Demo
  • Search
  • English