First published: Thu Mar 28 2024(Updated: )
An administrative user of WebReports may perform a Cross Site Scripting (XSS) and/or Man in the Middle (MITM) exploit through SAML configuration.
Credit: psirt@hcl.com
Affected Software | Affected Version | How to fix |
---|---|---|
HCL BigFix Platform |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2023-45706 is classified as high due to the potential for Cross Site Scripting (XSS) and Man in the Middle (MITM) exploits.
To fix CVE-2023-45706, administrators should review and update their SAML configurations to eliminate the vulnerability to XSS and MITM attacks.
CVE-2023-45706 affects users of the HCL BigFix Platform who utilize SAML configurations.
CVE-2023-45706 can be exploited via Cross Site Scripting (XSS) and Man in the Middle (MITM) attacks.
Yes, users should check with HCL for any available patches or updates to address CVE-2023-45706.