Show filters
72 Total Results
Displaying 1-10 of 72
Sort by:
Attacker Value
Unknown

CVE-2024-30117

Disclosure Date: October 14, 2024 (last updated October 18, 2024)
A dynamic search for a prerequisite library could allow the possibility for an attacker to replace the correct file under some circumstances.
Attacker Value
Unknown

CVE-2024-23556

Disclosure Date: May 18, 2024 (last updated May 18, 2024)
SSL/TLS Renegotiation functionality potentially leading to DoS attack vulnerability.
0
Attacker Value
Unknown

CVE-2024-23554

Disclosure Date: May 18, 2024 (last updated May 18, 2024)
Cross-Site Request Forgery (CSRF) on Session Token vulnerability that could potentially lead to Remote Code Execution (RCE).
0
Attacker Value
Unknown

CVE-2024-23583

Disclosure Date: May 17, 2024 (last updated May 18, 2024)
An attacker could potentially intercept credentials via the task manager and perform unauthorized access to the Client Deploy Tool on Windows systems.
0
Attacker Value
Unknown

CVE-2023-45715

Disclosure Date: March 28, 2024 (last updated April 02, 2024)
The console may experience a service interruption when processing file names with invalid characters.
0
Attacker Value
Unknown

CVE-2023-45706

Disclosure Date: March 28, 2024 (last updated April 02, 2024)
An administrative user of WebReports may perform a Cross Site Scripting (XSS) and/or Man in the Middle (MITM) exploit through SAML configuration.
0
Attacker Value
Unknown

CVE-2023-45705

Disclosure Date: March 28, 2024 (last updated January 24, 2025)
An administrative user of WebReports may perform a Server Side Request Forgery (SSRF) exploit through SMTP configuration options.
Attacker Value
Unknown

CVE-2023-37531

Disclosure Date: February 29, 2024 (last updated December 18, 2024)
A cross-site scripting (XSS) vulnerability in the Web Reports component of HCL BigFix Platform can possibly allow an attacker to execute malicious javascript code into a form field of a webpage by a user with privileged access.
Attacker Value
Unknown

CVE-2023-37530

Disclosure Date: February 29, 2024 (last updated December 18, 2024)
A cross-site scripting (XSS) vulnerability in the Web Reports component of HCL BigFix Platform can possibly allow an attacker to execute malicious javascript code into a webpage trying to retrieve cookie stored information.
Attacker Value
Unknown

CVE-2023-37529

Disclosure Date: February 29, 2024 (last updated December 18, 2024)
A cross-site scripting (XSS) vulnerability in the Web Reports component of HCL BigFix Platform can possibly allow an attacker to execute malicious javascript code into a webpage trying to retrieve cookie stored information. This is not the same vulnerability as identified in CVE-2023-37530.