CVE-2024-0317

CVSS V2 None CVSS V3 None
Description
Cross-Site Scripting in FireEye EX, affecting version 9.0.3.936727. Exploitation of this vulnerability allows an attacker to send a specially crafted JavaScript payload via the 'type' and 's_f_name' parameters to an authenticated user to retrieve their session details.
Overview
  • CVE ID
  • CVE-2024-0317
  • Assigner
  • INCIBE
  • Vulnerability Status
  • PUBLISHED
  • Published Version
  • 2024-01-15T16:23:34.711Z
  • Last Modified Date
  • 2024-01-15T16:26:28.983Z
History
Created Old Value New Value Data Type Notes
2024-06-26 09:35:56 Added to TrackCVE