A cross-site scripting (XSS) vulnerability in the Web Reports component of HCL BigFix Platform can possibly allow an attacker to execute malicious javascript code into a webpage trying to retrieve cookie stored information.
Metrics
Affected Vendors & Products
References
History
Tue, 03 Jun 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 17 Dec 2024 20:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Hcltech
Hcltech bigfix Platform |
|
| Weaknesses | CWE-79 | |
| CPEs | cpe:2.3:a:hcltech:bigfix_platform:*:*:*:*:*:*:*:* cpe:2.3:a:hcltech:bigfix_platform:11.0.0:*:*:*:*:*:*:* |
|
| Vendors & Products |
Hcltech
Hcltech bigfix Platform |
Status: PUBLISHED
Assigner: HCL
Published: 2024-02-02T20:02:24.389Z
Updated: 2025-06-03T18:58:45.817Z
Reserved: 2023-07-06T16:12:30.394Z
Link: CVE-2023-37530
Updated: 2024-08-02T17:16:30.461Z
Status : Modified
Published: 2024-02-29T01:40:04.740
Modified: 2025-06-03T19:15:33.213
Link: CVE-2023-37530
No data.