CVE-2024-23553
02.02.2024, 21:15
A cross-site scripting (XSS) vulnerability in the Web Reports component of HCL BigFix Platform exists due to missing a specific http header attribute.
Vendor | Product | Version |
---|---|---|
hcltech | bigfix_platform | 9.5 ≤ 𝑥 < 9.5.24 |
hcltech | bigfix_platform | 10.0.0 ≤ 𝑥 < 10.0.11 |
hcltech | bigfix_platform | 11.0.0 |
𝑥
= Vulnerable software versions