HCL Technologies HCL BigFix Platform是美国HCL Technologies公司的一套端点安全管理平台。该平台支持自动发现、管理和修复端点安全问题。 HCL BigFix Platform存在跨站脚本漏洞,该漏洞源于Web Reports 组件中存在一个跨站脚本漏洞,允许攻击者在呈现网页内容时,通过远程注入在应用程序会话或数据库中执行恶意 javascript 代码。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| HCL Software | BigFix Platform | 9.5 - 9.5.23, 10 - 10.0.10 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2023-37531 | 3.3 LOW | A cross-site scripting (XSS) vulnerability affects HCL BigFix Platform |
| CVE-2024-23553 | 3.0 LOW | A cross-site scripting (XSS) vulnerability affects HCL BigFix Platform |
| CVE-2023-37530 | 3.0 LOW | A cross-site scripting (XSS) vulnerability affects HCL BigFix Platform |
| CVE-2023-37529 | 3.0 LOW | A cross-site scripting (XSS) vulnerability affects HCL BigFix Platform |
No comments yet