Security Advisory

CVE-2022-43711

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-07-26 00:00:00
Last updated 2024-10-23 19:19:08
Assigner mitre
State PUBLISHED

Description

Interactive Forms (IAF) in GX Software XperienCentral versions 10.29.1 until 10.33.0 was vulnerable to cross site scripting attacks (XSS) because the CSP header uses eval() in the script-src.