First published: Thu Aug 03 2023(Updated: )
A Persistent XSS vulnerability can be carried out in a certain field of Unica Campaign. An attacker could hijack a user's session and perform other attacks.
Credit: psirt@hcl.com psirt@hcl.com
Affected Software | Affected Version | How to fix |
---|---|---|
Hcltech Unica | <12.1.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-37501 refers to a Persistent XSS vulnerability in a certain field of Unica Campaign.
The severity of CVE-2023-37501 is high with a CVSS score of 6.1.
CVE-2023-37501 affects Hcltech Unica version up to exclusive 12.1.1.
CVE-2023-37501 allows an attacker to hijack a user's session and perform other attacks.
To fix CVE-2023-37501, apply the latest security patch provided by the software vendor.