PT-2025-3164 · Cfengine · Cfengine Enterprise Mission Portal

Published

2025-01-21

·

Updated

2025-01-22

·

CVE-2024-55958

CVSS v3.1

4.8

Medium

VectorAV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions CFEngine Enterprise Mission Portal versions 3.21.5 and below CFEngine Enterprise Mission Portal version 3.24.0
Description The issue allows for XSS. The estimated number of potentially affected devices worldwide is not available. There is no information about real-world incidents where this issue was exploited.
Recommendations For CFEngine Enterprise Mission Portal version 3.24.0, update to version 3.24.1. For CFEngine Enterprise Mission Portal version 3.21.5 and below, update to version 3.21.6.

Fix

XSS

Weakness Enumeration

Related Identifiers

CVE-2024-55958

Affected Products

Cfengine Enterprise Mission Portal