First published: Thu Aug 03 2023(Updated: )
A Persistent Cross-site Scripting (XSS) vulnerability can be carried out on certain pages of Unica Platform. An attacker could hijack a user's session and perform other attacks.
Credit: psirt@hcl.com psirt@hcl.com
Affected Software | Affected Version | How to fix |
---|---|---|
Hcltech Unica | <12.1.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-37500 is a Persistent Cross-site Scripting (XSS) vulnerability that can be carried out on certain pages of Unica Platform.
An attacker could exploit CVE-2023-37500 by hijacking a user's session and performing other attacks.
CVE-2023-37500 has a severity rating of 6.1 (High).
Unica Platform version 12.1.1 and earlier are affected by CVE-2023-37500.
To fix CVE-2023-37500, it is recommended to upgrade Unica Platform to a version that is not affected by the vulnerability.