CVE-2024-6380
5.4
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Exploitability: 2.3 / Impact: 2.7
Source: NVD
Description
A reflected Cross-site Scripting (XSS) vulnerability affecting ENOVIA Collaborative Industry Innovator from Release 3DEXPERIENCE R2022x through Release 3DEXPERIENCE R2024x allows an attacker to execute arbitrary script code in user's browser session.
Affected (1)
Products: 3ds: 3dexperience Enovia
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| From r2022x to r2024x |
References (1)
Timeline
No history available yet.