We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Crisp.chat (Helpdesk and Chat)

Ok

THREATINT
PUBLISHED

CVE-2023-37539

HCL Domino Catalog template is susceptible to a Stored Cross-Site Scripting (XSS) vulnerability



Description

The Domino Catalog template is susceptible to a Stored Cross-Site Scripting (XSS) vulnerability. An attacker with the ability to edit documents in the catalog application/database created from this template can embed a cross site scripting attack. The attack would be activated by an end user clicking it.

Reserved 2023-07-06 | Published 2024-06-06 | Updated 2024-08-02 | Assigner HCL


HIGH: 8.4CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:H/I:H/A:H

Product status

Default status
unaffected

11, 12, 14
affected

References

support.hcltechsw.com/...b_article&sysparm_article=KB0113715

cve.org (CVE-2023-37539)

nvd.nist.gov (CVE-2023-37539)

Download JSON

Share this page
https://cve.threatint.com/CVE/CVE-2023-37539

Support options

Helpdesk Chat, Email, Knowledgebase