Description
An Cross site scripting vulnerability in the EDR XConsole before this release allowed an attacker to potentially leverage an XSS/HTML-Injection using command line variables. A malicious threat actor could execute commands on the victim's browser for sending carefully crafted malicious links to the EDR XConsole end user.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-32735 | An Cross site scripting vulnerability in the EDR XConsole before this release allowed an attacker to potentially leverage an XSS/HTML-Injection using command line variables. A malicious threat actor could execute commands on the victim's browser for sending carefully crafted malicious links to the EDR XConsole end user. |
References
| Link | Providers |
|---|---|
| https://thrive.trellix.com/s/article/000013455 |
|
History
No history.
Status: PUBLISHED
Assigner: trellix
Published:
Updated: 2024-08-01T20:33:52.528Z
Reserved: 2024-04-25T10:01:39.233Z
Link: CVE-2024-4176
Updated: 2024-08-01T20:33:52.528Z
Status : Modified
Published: 2024-06-13T09:15:14.217
Modified: 2024-11-21T09:42:20.253
Link: CVE-2024-4176
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD