CVE-2024-6379: Reflected Cross-site Scripting (XSS) vulnerability affecting 3DSwymer from Release 3DEXPERIENCE R2022x through Release 3DEXPERIENCE R2024x
A reflected Cross-site Scripting (XSS) vulnerability affecting 3DSwymer from Release 3DEXPERIENCE R2022x through Release 3DEXPERIENCE R2024x allows an attacker to execute arbitrary script code in user's browser session.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-6379?
CVE-2024-6379 is rated as a high severity vulnerability due to its ability to execute arbitrary script code in a user's browser session.
How do I fix CVE-2024-6379?
To mitigate CVE-2024-6379, update to the latest version of 3DSwymer that addresses this reflected Cross-site Scripting vulnerability.
What software versions are affected by CVE-2024-6379?
CVE-2024-6379 affects 3DSwymer from Release 3DEXPERIENCE R2022x through Release 3DEXPERIENCE R2024x.
Can CVE-2024-6379 be exploited remotely?
Yes, CVE-2024-6379 can be exploited remotely since it involves a reflected Cross-site Scripting vulnerability.
What impact does CVE-2024-6379 have on users?
CVE-2024-6379 allows attackers to execute arbitrary scripts in users' browsers, potentially leading to data theft or session hijacking.