CVE-2024-28979

Dell OpenManage Enterprise, versions prior to 4.1.0, contains an XSS injection vulnerability in UI. A high privileged local attacker could potentially exploit this vulnerability, leading to JavaScript injection.
Configurations

Configuration 1 (hide)

cpe:2.3:a:dell:openmanage_enterprise:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2024-05-01 04:15

Updated : 2024-05-23 19:05


NVD link : CVE-2024-28979

Mitre link : CVE-2024-28979

CVE.ORG link : CVE-2024-28979


JSON object : View

Products Affected

dell

  • openmanage_enterprise
CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

CWE-20

Improper Input Validation