← volver
CVE-2023-45707

HCL Connections Docs is vulnerable to Cross-Site Scripting (XSS)

CVSS 4.4 MEDIUMEPSS 0.3%CWE-79
Vexday Risk Score
13Bajo
Decisión SSVC (CISA)
Track
Sin señal de explotación → monitorear
CVSS 4.4EPSS 0.3%KEV nãoPoC Nuclei Metasploit Patch
Ciclo de vida
08 jun 2024Publicada en NVD
Recomendación: Monitorear — sin señal de explotación por ahora.
HCL Connections Docs is vulnerable to a cross-site scripting attack where an attacker may leverage this issue to execute arbitrary code. This may lead to credentials disclosure and possibly launch additional attacks.
CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:C/C:L/I:L/A:N

¿Quieres saber si tu infraestructura está expuesta a esto?

Hablar con TrueHacking →