First published: Wed Jul 26 2023(Updated: )
HCL BigFix Mobile is vulnerable to a cross-site scripting attack. An authenticated attacker could inject malicious scripts into the application.
Credit: psirt@hcl.com psirt@hcl.com
Affected Software | Affected Version | How to fix |
---|---|---|
Hcltech Bigfix Mobile | =3.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-28014 is a vulnerability in HCL BigFix Mobile that allows an authenticated attacker to inject malicious scripts into the application using a cross-site scripting attack.
The severity of CVE-2023-28014 is medium, with a severity value of 5.4.
CVE-2023-28014 affects HCL BigFix Mobile by allowing an authenticated attacker to inject malicious scripts into the application.
To fix CVE-2023-28014 in HCL BigFix Mobile, apply the latest security patch or update provided by HCL.
You can find more information about CVE-2023-28014 in the HCL support article: https://support.hcltechsw.com/csm?id=kb_article&sysparm_article=KB0106371.