CVE-2024-8004: Stored Cross-site Scripting (XSS) vulnerability affecting ENOVIA Collaborative Industry Innovator from Release 3DEXPERIENCE R2022x through Release 3DEXPERIENCE R2024x
A stored Cross-site Scripting (XSS) vulnerability affecting ENOVIA Collaborative Industry Innovator from Release 3DEXPERIENCE R2022x through Release 3DEXPERIENCE R2024x allows an attacker to execute arbitrary script code in user's browser session.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-8004?
CVE-2024-8004 is considered a high-severity vulnerability due to its ability to execute arbitrary scripts in users' browser sessions.
How do I fix CVE-2024-8004?
To fix CVE-2024-8004, it is recommended to upgrade to the latest version of ENOVIA Collaborative Industry Innovator that includes the security patch.
Who is affected by CVE-2024-8004?
CVE-2024-8004 affects users of ENOVIA Collaborative Industry Innovator from 3DEXPERIENCE R2022x to R2024x.
What type of vulnerability is CVE-2024-8004?
CVE-2024-8004 is categorized as a stored Cross-site Scripting (XSS) vulnerability.
What can attackers do with CVE-2024-8004?
Attackers exploiting CVE-2024-8004 can execute arbitrary script code in the browser sessions of affected users.