CVE-2024-6361: Improper Neutralization vulnerability (XSS) has been discovered in OpenText™ ALM Octane product.
Published Aug 5, 2024
·Updated
Improper Neutralization vulnerability (XSS) has been discovered in OpenText™ ALM Octane. The vulnerability affects all version prior to version 23.4. The vulnerability could cause remote code execution attack.
Affected Software
1 affected component
OpenText ALM Octane<23.4
Remediation
Information
https://portal.microfocus.com/s/article/KM000032605
Event History
Aug 5, 2024
CVE Published
via MITRE·06:22 PM
Data Sourced
via MITRE·06:22 PM
RemedyDescriptionWeakness
Data Sourced
via NVD·07:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-6361?
CVE-2024-6361 is categorized as a high severity vulnerability due to the risk of remote code execution.
2
How do I fix CVE-2024-6361?
To mitigate CVE-2024-6361, you should upgrade OpenText™ ALM Octane to version 23.4 or later.
3
Which versions of OpenText™ ALM Octane are affected by CVE-2024-6361?
CVE-2024-6361 affects all versions of OpenText™ ALM Octane prior to version 23.4.
4
What type of vulnerability is CVE-2024-6361?
CVE-2024-6361 is an Improper Neutralization vulnerability that leads to Cross-Site Scripting (XSS).
5
Can CVE-2024-6361 lead to remote code execution?
Yes, CVE-2024-6361 could potentially allow attackers to execute remote code on the affected systems.