Security Advisory

CVE-2023-37538

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2023-10-11 12:53:10
Last updated 2024-09-18 16:02:56
Assigner HCL
CVSS score 9.3
State PUBLISHED

Description

HCL Digital Experience is susceptible to cross site scripting (XSS). One subcomponent is vulnerable to reflected XSS. In reflected XSS, an attacker must induce a victim to click on a crafted URL from some delivery mechanism (email, other web site).