Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-39397 | A Cross-site-scripting (XSS) vulnerability exists in the Reporter Widgets that allows HTML injection. |
| Link | Providers |
|---|---|
| https://www.veeam.com/kb4649 |
|
Wed, 16 Oct 2024 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Veeam
Veeam one |
|
| Weaknesses | CWE-79 | |
| CPEs | cpe:2.3:a:veeam:one:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Veeam
Veeam one |
|
| Metrics |
cvssV3_1
|
Mon, 09 Sep 2024 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Sat, 07 Sep 2024 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A Cross-site-scripting (XSS) vulnerability exists in the Reporter Widgets that allows HTML injection. | |
| References |
| |
| Metrics |
cvssV3_0
|
Status: PUBLISHED
Assigner: hackerone
Published:
Updated: 2024-10-27T14:31:53.241Z
Reserved: 2024-07-27T01:04:08.012Z
Link: CVE-2024-42020
Updated: 2024-09-09T16:21:37.471Z
Status : Modified
Published: 2024-09-07T17:15:14.127
Modified: 2024-10-27T15:35:08.650
Link: CVE-2024-42020
No data.
OpenCVE Enrichment
No data.
EUVD