CVE-2026-101141 | Eleveo Call Recording Software 9.7.0 Play Audio Page /callrec/audio.jsp viewRoleId/cfType cross site scripting

SecurityVulns

A vulnerability categorized as problematic has been discovered in Eleveo Call Recording Software 9.7.0. Affected is an unknown function of the file /callrec/audio.jsp of the component Play Audio Page. Executing a manipulation of the argument viewRoleId/cfType can lead to cross site scripting.

This vulnerability is tracked as CVE-2026-101141. The attack can be launched remotely. Moreover, an exploit is present.

The vendor was contacted early about this disclosure but did not respond in any way.VulDB Recent EntriesRead More