Cross-Site Scripting in FireEye HXTool affecting version 4.6. This vulnerability allows an attacker to store a specially crafted JavaScript payload in the 'Profile Name' and 'Hostname/IP' parameters that will be triggered when items are loaded.
Metrics
Affected Vendors & Products
Fixes
Solution
The FireEye team is working on fixing the reported vulnerabilities. It is recommended to update affected products to the latest version available.
Workaround
No workaround given by the vendor.
References
History
Wed, 23 Oct 2024 16:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|

Status: PUBLISHED
Assigner: INCIBE
Published:
Updated: 2024-10-23T15:28:55.604Z
Reserved: 2024-01-08T11:56:04.696Z
Link: CVE-2024-0318

Updated: 2024-08-01T18:04:49.017Z

Status : Modified
Published: 2024-01-15T17:15:09.060
Modified: 2024-11-21T08:46:18.813
Link: CVE-2024-0318

No data.

No data.