Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-41407 | Unauthenticated Stored Cross-Site Scripting (XSS) vulnerability identified in BigFix Server version 9.5.12.68, allowing for potential data exfiltration. This XSS vulnerability is in the Gather Status Report, which is served by the BigFix Relay. |
No history.
Status: PUBLISHED
Assigner: HCL
Published:
Updated: 2024-08-02T17:16:30.415Z
Reserved: 2023-07-06T16:11:42.472Z
Link: CVE-2023-37520
No data.
Status : Modified
Published: 2023-12-21T23:15:08.453
Modified: 2026-06-17T06:08:22.273
Link: CVE-2023-37520
No data.
OpenCVE Enrichment
No data.
-
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
EUVD