CVE-2024-4176

CVSS V2 None CVSS V3 None
Description
An Cross site scripting vulnerability in the EDR XConsole before this release allowed an attacker to potentially leverage an XSS/HTML-Injection using command line variables. A malicious threat actor could execute commands on the victim's browser for sending carefully crafted malicious links to the EDR XConsole end user.
Overview
  • CVE ID
  • CVE-2024-4176
  • Assigner
  • trellix
  • Vulnerability Status
  • PUBLISHED
  • Published Version
  • 2024-06-13T08:59:37.481Z
  • Last Modified Date
  • 2024-06-13T08:59:37.481Z
References
Reference URL Reference Tags
https://thrive.trellix.com/s/article/000013455
History
Created Old Value New Value Data Type Notes
2024-06-23 22:18:06 Added to TrackCVE