Description
Cross-Site Scripting in FireEye Malware Analysis (AX) affecting version 9.0.3.936530. This vulnerability allows an attacker to send a specially crafted JavaScript payload in the application URL to retrieve the session details of a legitimate user.
No analysis available yet.
Remediation
Vendor Solution
The FireEye team is working on fixing the reported vulnerabilities. It is recommended to update affected products to the latest version available.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-16116 | Cross-Site Scripting in FireEye Malware Analysis (AX) affecting version 9.0.3.936530. This vulnerability allows an attacker to send a specially crafted JavaScript payload in the application URL to retrieve the session details of a legitimate user. |
References
History
Tue, 03 Jun 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: INCIBE
Published:
Updated: 2025-06-03T13:59:47.443Z
Reserved: 2024-01-08T11:56:06.411Z
Link: CVE-2024-0320
Updated: 2024-08-01T18:04:49.037Z
Status : Modified
Published: 2024-01-15T17:15:09.557
Modified: 2024-11-21T08:46:19.060
Link: CVE-2024-0320
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD