A cross-site scripting (XSS) vulnerability in the Web Reports component of HCL BigFix Platform can possibly allow an attack to exploit an application parameter during execution of the Save Report.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-41415 | A cross-site scripting (XSS) vulnerability in the Web Reports component of HCL BigFix Platform can possibly allow an attack to exploit an application parameter during execution of the Save Report. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Tue, 03 Jun 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: HCL
Published:
Updated: 2025-06-03T19:00:40.519Z
Reserved: 2023-07-06T16:12:30.394Z
Link: CVE-2023-37528
Updated: 2024-08-02T17:16:30.464Z
Status : Modified
Published: 2024-02-03T06:15:46.850
Modified: 2025-06-03T19:15:32.907
Link: CVE-2023-37528
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD