CVE-2024-5540

Severity CVSS v4.0:
MEDIUM
Type:
CWE-79 Cross-Site Scripting (XSS)
Publication date:
27/11/2025
Last modified:
27/11/2025

Description

The reflective cross-site scripting vulnerability found in ALC WebCTRL and Carrier i-Vu in versions older than 8.0 affects login panels allowing a <br /> <br /> malicious actor to compromise the client browser<br /> <br /> .