Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2024-42210

Опубликовано: 19 мар. 2026
Источник: nvd
CVSS3: 7.6
CVSS3: 5.4
EPSS Низкий

Описание

A Stored cross-site scripting (XSS) vulnerability affects HCL Unica Marketing Operations v12.1.8 and lower.  Stored cross-site scripting (also known as second-order or persistent XSS) arises when an application receives data from an untrusted source and includes that data within its later HTTP responses in an unsafe way.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:hcltech:unica:*:*:*:*:*:*:*:*
Версия до 12.1.9 (исключая)

EPSS

Процентиль: 7%
0.0017
Низкий

7.6 High

CVSS3

5.4 Medium

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 7.6
github
5 месяцев назад

A Stored cross-site scripting (XSS) vulnerability affects HCL Unica Marketing Operations v12.1.8 and lower.  Stored cross-site scripting (also known as second-order or persistent XSS) arises when an application receives data from an untrusted source and includes that data within its later HTTP responses in an unsafe way.

EPSS

Процентиль: 7%
0.0017
Низкий

7.6 High

CVSS3

5.4 Medium

CVSS3

Дефекты

CWE-79