HCL Technologies HCL Unica Campaign是HCL Technologies公司的一个营销活动管理解决方案。 Unica Campaign 12.1.3之前版本存在安全漏洞,该漏洞源于存在持久性跨站脚本(XSS)漏洞,攻击者可以劫持用户的会话并执行其他攻击。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| HCL Software | HCL Unica Campaign | <12.1.3 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2023-37500 | 8.1 HIGH | A Persistent Cross-site Scripting (XSS) vulnerability affects HCL Unica Platform |
| CVE-2023-37499 | 8.1 HIGH | A Persistent Cross-site Scripting (XSS) vulnerability affects HCL Unica Platform |
| CVE-2023-37498 | 8.1 HIGH | HCL Unica Platform is vulnerable to a privilege escalation by unauthorized group assignati |
| CVE-2023-37497 | 8.1 HIGH | An XML External Entity (XXE) Injection Vulnerability affects HCL Unica Platform |
No comments yet