← Back

CVE-2023-37528

nvd nist
Published: Feb 3, 2024Modified: Jun 17, 2026

JSON object

Loading...
6.1
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Exploitability: 2.8 / Impact: 2.7
Source: NVD

Description

A cross-site scripting (XSS) vulnerability in the Web Reports component of HCL BigFix Platform can possibly allow an attack to exploit an application parameter during execution of the Save Report.

Affected (3)

1 product
Bigfix Platform
Configuration A
3 vulnerable
Vulnerable SoftwareAffected Versions
Hcltech
From 10.0.0 to 10.0.11
From 9.5 to 9.5.24
Version 11.0.0

References (2)

Timeline

No history available yet.