5.4
CVSSv3

CVE-2023-37529

CVSSv4: NA | CVSSv3: 5.4 | CVSSv2: NA | VMScore: 640 | EPSS: 0.00597 | KEV: Not Included
Published: 29/02/2024 Updated: 03/06/2025

Vulnerability Summary

A cross-site scripting (XSS) vulnerability in the Web Reports component of HCL BigFix Platform can possibly allow an malicious user to execute malicious javascript code into a webpage trying to retrieve cookie stored information. This is not the same vulnerability as identified in CVE-2023-37530.

Vulnerable Product Search on Vulmon Subscribe to Product

hcl software bigfix platform

hcltech bigfix platform

hcltech bigfix platform 11.0.0