This issue affects Email Security through 8.5.5.
Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Solution
Customers should install ESG 8.5.5 HF005
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-54290 | Improper Neutralization of Script in Attributes in a Web Page vulnerability in Forcepoint Email Security (Blocked Messages module) allows Stored XSS. This issue affects Email Security through 8.5.5. |
Mon, 24 Mar 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 24 Mar 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper Neutralization of Script in Attributes in a Web Page vulnerability in Forcepoint Email Security (Blocked Messages module) allows Stored XSS. This issue affects Email Security through 8.5.5. | |
| Title | Persistent XSS in blocked messages | |
| Weaknesses | CWE-83 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: forcepoint
Published:
Updated: 2025-03-24T18:43:09.484Z
Reserved: 2024-09-23T14:33:13.196Z
Link: CVE-2024-9103
Updated: 2025-03-24T16:24:48.166Z
Status : Deferred
Published: 2025-03-24T16:15:32.950
Modified: 2026-04-15T00:35:42.020
Link: CVE-2024-9103
No data.
OpenCVE Enrichment
Updated: 2025-07-12T22:15:55Z
EUVD