CVE-2026-101141 | Eleveo Call Recording Software 9.7.0 Play Audio Page /callrec/audio.jsp viewRoleId/cfType cross site scripting
A vulnerability categorized as problematic has been discovered in Eleveo Call Recording Software 9.7.0. Affected is an unknown function of the file /callrec/audio.jsp of the component Play Audio Page. Executing a manipulation of the argument viewRoleId/cfType can lead to cross site scripting.
This vulnerability is tracked as CVE-2026-101141. The attack can be launched remotely. Moreover, an exploit is present.
The vendor was contacted early about this disclosure but did not respond in any way.VulDB Recent EntriesRead More