A reflected Cross-site Scripting (XSS) vulnerability affecting ENOVIA Collaborative Industry Innovator from Release 3DEXPERIENCE R2022x through Release 3DEXPERIENCE R2024x allows an attacker to execute arbitrary script code in user's browser session.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://www.3ds.com/vulnerability/advisories |
History
Wed, 21 Aug 2024 16:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
3ds
3ds 3dexperience |
|
CPEs | cpe:2.3:o:3ds:3dexperience:*:*:*:*:*:*:*:* | |
Vendors & Products |
3ds
3ds 3dexperience |
Tue, 20 Aug 2024 18:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Enovia
Enovia collaborative Industry Innovator |
|
CPEs | cpe:2.3:a:enovia:collaborative_industry_innovator:*:*:*:*:*:*:*:* | |
Vendors & Products |
Enovia
Enovia collaborative Industry Innovator |
|
Metrics |
ssvc
|
Tue, 20 Aug 2024 14:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A reflected Cross-site Scripting (XSS) vulnerability affecting ENOVIA Collaborative Industry Innovator from Release 3DEXPERIENCE R2022x through Release 3DEXPERIENCE R2024x allows an attacker to execute arbitrary script code in user's browser session. | |
Title | Reflected Cross-site Scripting (XSS) vulnerability affecting ENOVIA Collaborative Industry Innovator from Release 3DEXPERIENCE R2022x through Release 3DEXPERIENCE R2024x | |
Weaknesses | CWE-79 | |
References |
| |
Metrics |
cvssV3_1
|
MITRE
Status: PUBLISHED
Assigner: 3DS
Published: 2024-08-20T13:45:10.521Z
Updated: 2024-08-20T17:23:48.066Z
Reserved: 2024-06-27T07:58:49.951Z
Link: CVE-2024-6378
Vulnrichment
Updated: 2024-08-20T17:23:24.495Z
NVD
Status : Analyzed
Published: 2024-08-20T14:15:10.127
Modified: 2024-08-21T15:53:57.750
Link: CVE-2024-6378
Redhat
No data.