A vulnerability has been identified in Polarion V2310 (All versions), Polarion V2404 (All versions < V2404.4). The file upload feature of the affected application improperly sanitizes xml files. This could allow an authenticated remote attacker to conduct a stored cross-site scripting attack by uploading specially crafted xml files that are later downloaded and viewed by other users of the application.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Tue, 23 Sep 2025 15:30:00 +0000

Type Values Removed Values Added
First Time appeared Siemens
Siemens polarion Alm
CPEs cpe:2.3:a:siemens:polarion_alm:*:*:*:*:*:*:*:*
cpe:2.3:a:siemens:polarion_alm:2310.0:*:*:*:*:*:*:*
Vendors & Products Siemens
Siemens polarion Alm

Tue, 13 May 2025 16:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 13 May 2025 09:45:00 +0000

Type Values Removed Values Added
Description A vulnerability has been identified in Polarion V2310 (All versions), Polarion V2404 (All versions < V2404.4). The file upload feature of the affected application improperly sanitizes xml files. This could allow an authenticated remote attacker to conduct a stored cross-site scripting attack by uploading specially crafted xml files that are later downloaded and viewed by other users of the application.
Weaknesses CWE-79
References
Metrics cvssV3_1

{'score': 6.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L'}

cvssV4_0

{'score': 5.1, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:P/VC:N/VI:L/VA:N/SC:L/SI:L/SA:L'}


cve-icon MITRE

Status: PUBLISHED

Assigner: siemens

Published:

Updated: 2025-05-13T16:11:11.445Z

Reserved: 2024-10-28T07:01:23.767Z

Link: CVE-2024-51446

cve-icon Vulnrichment

Updated: 2025-05-13T16:08:51.359Z

cve-icon NVD

Status : Analyzed

Published: 2025-05-13T10:15:21.710

Modified: 2025-09-23T15:29:14.553

Link: CVE-2024-51446

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.