Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-54981 | Prism Central versions prior to 2024.3.1 are vulnerable to a stored cross-site scripting attack via the Events component, allowing an attacker to hijack a victim user’s session and perform actions in their security context. |
Sun, 24 Aug 2025 22:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Nutanix
Nutanix prism Central |
|
| Vendors & Products |
Nutanix
Nutanix prism Central |
Wed, 20 Aug 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 20 Aug 2025 01:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Prism Central versions prior to 2024.3.1 are vulnerable to a stored cross-site scripting attack via the Events component, allowing an attacker to hijack a victim user’s session and perform actions in their security context. | |
| Title | Stored Cross-site Scripting (XSS) in Nutanix Prism Central | |
| Weaknesses | CWE-79 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: TML
Published:
Updated: 2025-08-20T15:15:34.599Z
Reserved: 2024-12-05T00:48:35.742Z
Link: CVE-2024-12223
Updated: 2025-08-20T13:57:31.512Z
Status : Deferred
Published: 2025-08-20T01:15:29.773
Modified: 2026-04-15T00:35:42.020
Link: CVE-2024-12223
No data.
OpenCVE Enrichment
Updated: 2025-08-24T22:19:13Z
EUVD