CVE-2024-4187: Stored XSS vulnerability has been discovered in OpenText™ Filr. The vulnerability could cause users to not be warned when clicking links to external sites.
Published Jul 31, 2024
·Updated
Stored XSS vulnerability has been discovered in OpenText™ Filr product, affecting versions 24.1.1 and 24.2. The vulnerability could cause users to not be warned when clicking links to external sites.
Affected Software
2 affected components
OpenText Filr=24.1.1
OpenText Filr=24.2
Remediation
Information
https://portal.microfocus.com/s/article/KM000032291
Event History
Jul 31, 2024
CVE Published
via MITRE·08:28 PM
Data Sourced
via MITRE·08:28 PM
RemedyDescriptionWeakness
Data Sourced
via NVD·09:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-4187?
CVE-2024-4187 is classified as a stored XSS vulnerability that can significantly impact user security.
2
How do I fix CVE-2024-4187?
To fix CVE-2024-4187, upgrade OpenText Filr to versions 24.1.2 or 24.2.1, which contain patches for this vulnerability.
3
Who is affected by CVE-2024-4187?
CVE-2024-4187 affects users of OpenText Filr versions 24.1.1 and 24.2.
4
What are the potential consequences of CVE-2024-4187?
The potential consequences of CVE-2024-4187 include unauthorized script execution that could compromise user data or lead to phishing attacks.
5
Is CVE-2024-4187 publicly known?
Yes, CVE-2024-4187 is a publicly disclosed vulnerability that requires immediate attention from affected users.