Description
An XSS vulnerability has been discovered in ICS Business Manager affecting version 7.06.0028.7066. A remote attacker could send a specially crafted string exploiting the obdd_act parameter, allowing the attacker to steal an authenticated user's session, and perform actions within the application.
No analysis available yet.
Remediation
Vendor Solution
There is no reported solution at this time.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-58354 | An XSS vulnerability has been discovered in ICS Business Manager affecting version 7.06.0028.7066. A remote attacker could send a specially crafted string exploiting the obdd_act parameter, allowing the attacker to steal an authenticated user's session, and perform actions within the application. |
References
History
No history.
Status: PUBLISHED
Assigner: INCIBE
Published:
Updated: 2024-08-30T19:22:47.444Z
Reserved: 2023-11-13T09:53:09.886Z
Link: CVE-2023-6098
Updated: 2024-08-02T08:21:17.144Z
Status : Modified
Published: 2023-11-13T13:15:08.237
Modified: 2024-11-21T08:43:07.903
Link: CVE-2023-6098
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD