CVE-2023-37528
6.1
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Exploitability: 2.8 / Impact: 2.7
Source: NVD
Description
A cross-site scripting (XSS) vulnerability in the Web Reports component of HCL BigFix Platform can possibly allow an attack to exploit an application parameter during execution of the Save Report.
Affected (3)
Products: Hcltech: Bigfix Platform
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| From 10.0.0 to 10.0.11 |
References (2)
Source: psirt@hcl.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Timeline
No history available yet.