{"id":"GHSA-2f4w-6mc7-4w78","summary":"LibreNMS Display Name 2 Stored Cross-site Scripting vulnerability","details":"# StoredXSS-LibreNMS-Display Name 2\n\n\n**Description:**\n\n\nXSS on the parameters (Replace $DEVICE_ID with your specific $DEVICE_ID value):`/device/$DEVICE_ID/edit` -\u003e param: display\n\n\nof Librenms versions 24.11.0 ([https://github.com/librenms/librenms](https://github.com/librenms/librenms)) allows remote attackers to inject malicious scripts. When a user views or interacts with the page displaying the data, the malicious script executes immediately, leading to potential unauthorized actions or data exposure.\n\n\n\n**Proof of Concept:**\n1. Add a new device through the LibreNMS interface.\n2. Edit the newly created device by going to the \"Device Settings\" section.\n3. In the \"Display Name\" field, enter the following payload: `\"\u003e\u003cimg src onerror=\"alert(document.cookie)\"\u003e`.\n![image](https://github.com/user-attachments/assets/b1664e15-eba8-4cdd-b730-fb18936f109c)\n4. Save the changes.\n5. The XSS payload is triggered when navigating to the path /device/$DEVICE_ID/logs and hovering over a type containing a tag (such as Core 1 in the image).\n![image](https://github.com/user-attachments/assets/df23cec8-94bb-4155-961b-52ea659654a2)\n\n\n\n**Impact:**\n\nExecution of Malicious Code","aliases":["CVE-2024-56144"],"modified":"2025-04-28T18:32:57Z","published":"2025-01-16T17:18:32Z","database_specific":{"cwe_ids":["CWE-79"],"severity":"MODERATE","github_reviewed":true,"github_reviewed_at":"2025-01-16T17:18:32Z","nvd_published_at":"2025-01-16T23:15:07Z"},"references":[{"type":"WEB","url":"https://github.com/librenms/librenms/security/advisories/GHSA-2f4w-6mc7-4w78"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2024-56144"},{"type":"WEB","url":"https://github.com/librenms/librenms/pull/16886"},{"type":"WEB","url":"https://github.com/librenms/librenms/commit/c63c912d86098bcefd52a28328482b94632eadf8"},{"type":"PACKAGE","url":"https://github.com/librenms/librenms"}],"affected":[{"package":{"name":"librenms/librenms","ecosystem":"Packagist","purl":"pkg:composer/librenms/librenms"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"24.11.10"},{"fixed":"24.12.0"}]}],"versions":["24.11.10"],"database_specific":{"source":"https://github.com/github/advisory-database/blob/main/advisories/github-reviewed/2025/01/GHSA-2f4w-6mc7-4w78/GHSA-2f4w-6mc7-4w78.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:N"}]}