CVE-2024-12091: Stored Cross-site Scripting (XSS) vulnerability affecting ENOVIA Collaborative Industry Innovator from Release 3DEXPERIENCE R2022x through Release 3DEXPERIENCE R2024x
A stored Cross-site Scripting (XSS) vulnerability affecting ENOVIA Collaborative Industry Innovator from Release 3DEXPERIENCE R2022x through Release 3DEXPERIENCE R2024x allows an attacker to execute arbitrary script code in user's browser session.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-12091?
The severity of CVE-2024-12091 is rated as high due to its potential impact on user sessions through stored XSS.
How do I fix CVE-2024-12091?
To fix CVE-2024-12091, upgrade to the latest version of ENOVIA Collaborative Industry Innovator that addresses this vulnerability.
What versions are affected by CVE-2024-12091?
CVE-2024-12091 affects ENOVIA Collaborative Industry Innovator from Release 3DEXPERIENCE R2022x through Release 3DEXPERIENCE R2024x.
What type of vulnerability is CVE-2024-12091?
CVE-2024-12091 is a stored Cross-site Scripting (XSS) vulnerability.
What can an attacker do with CVE-2024-12091?
An attacker exploiting CVE-2024-12091 can execute arbitrary script code in a user's browser session.