NA

CVE-2023-37520

Published: 21/12/2023 Updated: 29/12/2023
CVSS v3 Base Score: 6.1 | Impact Score: 2.7 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

Unauthenticated Stored Cross-Site Scripting (XSS) vulnerability identified in BigFix Server version 9.5.12.68, allowing for potential data exfiltration. This XSS vulnerability is in the Gather Status Report, which is served by the BigFix Relay.

Vulnerable Product Search on Vulmon Subscribe to Product

hcltech bigfix platform

hcltech bigfix platform 11.0.0