Security Advisory

CVE-2023-44286

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-12-14 15:35:32
Last updated 2024-08-02 19:59:52
Assigner dell
State PUBLISHED

Description

Dell PowerProtect DD , versions prior to 7.13.0.10, LTS 7.7.5.25, LTS 7.10.1.15, 6.2.1.110 contain a DOM-based Cross-Site Scripting vulnerability. A remote unauthenticated attacker could potentially exploit this vulnerability, leading to the injection of malicious HTML or JavaScript code to a victim users DOM environment in the browser. . Exploitation may lead to information disclosure, session theft, or client-side request forgery.