Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2024-5532

Опубликовано: 28 окт. 2024
Источник: nvd
CVSS3: 4.8
EPSS Низкий

Описание

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in OpenText™ Operations Agent. 

The XSS vulnerability could allow an attacker with local admin permissions to manipulate the content of the internal status page of the Agent on the local system.

This issue affects Operations Agent: 12.20, 12.21, 12.22, 12.23, 12.24, 12.25, 12.26.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:microfocus:operations_agent:*:*:*:*:*:*:*:*
Версия от 12.20 (включая) до 12.26 (включая)

EPSS

Процентиль: 39%
0.00175
Низкий

4.8 Medium

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 4.8
github
больше 1 года назад

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in OpenText™ Operations Agent.  The XSS vulnerability could allow an attacker with local admin permissions to manipulate the content of the internal status page of the Agent on the local system. This issue affects Operations Agent: 12.20, 12.21, 12.22, 12.23, 12.24, 12.25, 12.26.

EPSS

Процентиль: 39%
0.00175
Низкий

4.8 Medium

CVSS3

Дефекты

CWE-79