First published: Tue Apr 15 2025(Updated: )
HCL BigFix Web Reports might be subject to a Stored Cross-Site Scripting (XSS) attack, due to a potentially weak validation of user input.
Credit: psirt@hcl.com
Affected Software | Affected Version | How to fix |
---|---|---|
HCL BigFix Web Reports |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2024-42200 has been classified as high due to its potential to allow stored cross-site scripting attacks.
To fix CVE-2024-42200, ensure that user input is properly validated and sanitize any output displayed to users.
The potential impacts of CVE-2024-42200 include unauthorized script execution in the context of a user's session, leading to data theft and user impersonation.
CVE-2024-42200 affects HCL BigFix Web Reports but specific version information requires checking the official documentation.
A patch for CVE-2024-42200 is expected to be released by HCL, so users should monitor official communication for updates.