PT-2026-26260 · Hcl · Unica Marketing Operations

Mario Tesoro

·

Published

2026-03-19

·

Updated

2026-03-23

·

CVE-2024-42210

CVSS v3.1

7.6

High

VectorAV:N/AC:H/PR:H/UI:R/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions HCL Unica Marketing Operations versions 12.1.8 and lower
Description A stored cross-site scripting (XSS) issue exists in HCL Unica Marketing Operations. Stored cross-site scripting occurs when an application receives data from an untrusted source and includes that data within its later HTTP responses in an unsafe way.
Recommendations Versions prior to 12.1.8 are affected.

Exploit

Fix

XSS

Weakness Enumeration

Related Identifiers

CVE-2024-42210

Affected Products

Unica Marketing Operations