Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-48779 | A stored Cross-site Scripting (XSS) vulnerability affecting 3DSwym in 3DSwymer on Release 3DEXPERIENCE R2024x allows an attacker to execute arbitrary script code in user's browser session. |
| Link | Providers |
|---|---|
| https://www.3ds.com/vulnerability/advisories |
|
Fri, 13 Sep 2024 07:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A stored Cross-site Scripting (XSS) vulnerability affecting 3DSwym in 3DSwymer Release on 3DEXPERIENCE R2024x allows an attacker to execute arbitrary script code in user's browser session. | A stored Cross-site Scripting (XSS) vulnerability affecting 3DSwym in 3DSwymer on Release 3DEXPERIENCE R2024x allows an attacker to execute arbitrary script code in user's browser session. |
Wed, 04 Sep 2024 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
3ds
3ds 3dexperience |
|
| CPEs | cpe:2.3:a:3ds:3dexperience:r2024x:*:*:*:*:*:*:* | |
| Vendors & Products |
3ds
3ds 3dexperience |
Tue, 03 Sep 2024 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Dassault
Dassault 3dswymer 3dexperience 2024 |
|
| CPEs | cpe:2.3:a:dassault:3dswymer_3dexperience_2024:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Dassault
Dassault 3dswymer 3dexperience 2024 |
|
| Metrics |
ssvc
|
Mon, 02 Sep 2024 12:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A stored Cross-site Scripting (XSS) vulnerability affecting 3DSwym in 3DSwymer Release on 3DEXPERIENCE R2024x allows an attacker to execute arbitrary script code in user's browser session. | |
| Title | Stored Cross-site Scripting (XSS) vulnerability affecting 3DSwym in 3DSwymer on Release 3DEXPERIENCE R2024x | |
| Weaknesses | CWE-79 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: 3DS
Published:
Updated: 2024-09-13T07:02:19.477Z
Reserved: 2024-08-19T14:40:11.462Z
Link: CVE-2024-7939
Updated: 2024-09-03T14:14:23.512Z
Status : Modified
Published: 2024-09-02T12:15:20.530
Modified: 2024-09-13T07:15:06.990
Link: CVE-2024-7939
No data.
OpenCVE Enrichment
No data.
EUVD