CyberRota Analysis
AI-GeneratedThe vulnerability in the p.rfihub.com component of the Zeta Marketing Platform (ZMP) v1.0 allows for reflected cross-site scripting (XSS), enabling attackers to execute arbitrary JavaScript in the victim's browser by injecting a malicious URL into the ca parameter. Organizations utilizing this version of ZMP should prioritize remediation efforts to mitigate potential exploitation that could lead to unauthorized access or data theft. Security teams should assess their exposure and implement necessary patches or workarounds promptly.
Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
Note: these links are listed for security research and verification purposes only.
Original NVD Description
A reflected cross-site scripting (XSS) vulnerability in the p.rfihub.com component of Zeta Marketing Platform (ZMP) v1.0 allows attackers to execute arbitrary Javascript in the context of the victim's browser via injecting a crafted URL into the ca parameter.