Dell Unity, versions prior to 5.4, contains a Cross-site scripting vulnerability. An authenticated attacker could potentially exploit this vulnerability, stealing session information, masquerading as the affected user or carry out any actions that this user could perform, or to generally control the victim's browser.
Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-19806 | Dell Unity, versions prior to 5.4, contains a Cross-site scripting vulnerability. An authenticated attacker could potentially exploit this vulnerability, stealing session information, masquerading as the affected user or carry out any actions that this user could perform, or to generally control the victim's browser. |
No history.
Status: PUBLISHED
Assigner: dell
Published:
Updated: 2024-08-19T14:40:25.778Z
Reserved: 2024-01-08T12:59:32.810Z
Link: CVE-2024-22230
Updated: 2024-08-01T22:43:33.795Z
Status : Modified
Published: 2024-02-12T19:15:12.717
Modified: 2026-06-17T07:10:59.453
Link: CVE-2024-22230
No data.
OpenCVE Enrichment
No data.
-
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
EUVD