PT-2023-26013 · Hcl · Hcl Digital Experience

Published

2023-10-11

·

Updated

2023-10-18

·

CVE-2023-37538

CVSS v3.1

9.3

Critical

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:N
Name of the Vulnerable Software and Affected Versions HCL Digital Experience (affected versions not specified)
Description The issue concerns cross site scripting (XSS), specifically reflected XSS, where an attacker must trick a victim into clicking a crafted URL sent through various means like email or other websites.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

XSS

Weakness Enumeration

Related Identifiers

CVE-2023-37538

Affected Products

Hcl Digital Experience