A stored cross-site scripting (XSS) in Vermeg Agile Reporter v23.2.1 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Message field under the Set Broadcast Message module.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Wed, 21 Aug 2024 16:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-79 | |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-21T14:42:38.812Z
Reserved: 2024-06-10T00:00:00
Link: CVE-2024-37828
Updated: 2024-08-02T03:57:39.767Z
Status : Awaiting Analysis
Published: 2024-06-17T21:15:51.280
Modified: 2024-11-21T09:24:21.423
Link: CVE-2024-37828
No data.
OpenCVE Enrichment
Updated: 2025-07-13T11:15:17Z
Weaknesses