ZeroHour

CVE-2023-37528

CVSS 3.1
6.1 medium
EPSS
<1%p27
Published
()
Modified
Description

A cross-site scripting (XSS) vulnerability in the Web Reports component of HCL BigFix Platform can possibly allow an attack to exploit an application parameter during execution of the Save Report.

Vendors
hcltech
Products
bigfix platform
Weakness
CWE-79
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.