CVE-2024-36459
EUVD-2024-3610314.06.2024, 12:15
A CRLF cross-site scripting vulnerability has been identified in certain configurations of the SiteMinder Web Agent for IIS Web Server and SiteMinder Web Agent for Domino Web Server. As a result, an attacker can execute arbitrary Javascript code in a client browser.
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| broadcom | symantec_siteminder | 𝑥 ≤ r12.52_sp1_cr11 | ADP |
References