A reflected cross-site scripting (XSS) vulnerability in the Web Reports component of HCL BigFix Platform can possibly allow an attacker to execute malicious javascript code in the application session or in database, via remote injection, while rendering content in a web page.
References
Link | Resource |
---|---|
https://support.hcltechsw.com/csm?id=kb_article&sysparm_article=KB0110209 | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: HCL
Published: 2024-02-02T18:10:04.303Z
Updated: 2024-07-05T17:21:34.270Z
Reserved: 2023-07-06T16:12:30.394Z
Link: CVE-2023-37527
JSON object: View
NVD Information
Status : Analyzed
Published: 2024-02-02T19:15:07.990
Modified: 2024-02-10T01:19:03.593
Link: CVE-2023-37527
JSON object: View
Redhat Information
No data.
CWE