CVE-2024-0169: XSS
Published Feb 12, 2024
·Updated
Dell Unity, version(s) 5.3 and prior, contain(s) an Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Information exposure.
Affected Software
1 affected component
Dell Unity Operating Environment<5.4.0.0.5.094
Event History
Feb 12, 2024
CVE Published
via MITRE·06:13 PM
Data Sourced
via MITRE·06:13 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-0169?
The severity of CVE-2024-0169 is considered low.
2
How do I fix CVE-2024-0169?
To fix CVE-2024-0169, upgrade the Dell Unity Operating Environment to version 5.4.0.0.5.094 or later.
3
What types of attacks can be executed due to CVE-2024-0169?
CVE-2024-0169 can be exploited by low privileged attackers to perform Cross-site Scripting (XSS) attacks.
4
Can CVE-2024-0169 lead to information exposure?
Yes, CVE-2024-0169 could potentially lead to information exposure due to improper input neutralization.
5
What versions of Dell Unity are affected by CVE-2024-0169?
Dell Unity versions 5.3 and prior are vulnerable to CVE-2024-0169.