Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in OpenText™ ALM Octane Management allows Stored XSS. The vulnerability could result in a remote code execution attack.
This issue affects ALM Octane Management: from 16.2.100 through 24.4.
Metrics
Affected Vendors & Products
References
History
Wed, 13 Nov 2024 21:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Opentext
Opentext alm Octane |
|
CPEs | cpe:2.3:a:opentext:alm_octane:-:*:*:*:*:*:*:* | |
Vendors & Products |
Opentext
Opentext alm Octane |
|
Metrics |
cvssV3_1
|
Tue, 12 Nov 2024 17:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in OpenText™ ALM Octane Management allows Stored XSS. The vulnerability could result in a remote code execution attack. This issue affects ALM Octane Management: from 16.2.100 through 24.4. | |
Title | Improper Neutralization vulnerability has been discovered in OpenText™ ALM Octane Management. | |
Weaknesses | CWE-79 | |
References |
| |
Metrics |
cvssV4_0
|
MITRE
Status: PUBLISHED
Assigner: OpenText
Published: 2024-11-12T16:55:11.548Z
Updated: 2024-11-21T16:20:14.503Z
Reserved: 2024-11-06T14:12:55.511Z
Link: CVE-2024-10923
Vulnrichment
Updated: 2024-11-13T20:42:14.302Z
NVD
Status : Awaiting Analysis
Published: 2024-11-12T17:15:05.947
Modified: 2024-11-21T17:15:10.053
Link: CVE-2024-10923
Redhat
No data.