HCL BigFix OSD Bare Metal Server WebUI is affected by missing or insecure tags
CVE-2023-37523
9.8CRITICAL
What is CVE-2023-37523?
The HCL BigFix Bare OSD Metal Server WebUI is susceptible to security issues stemming from missing or improperly configured tags. This vulnerability enables potential attackers to exploit the system by executing malicious scripts in the context of the user's browser, which could lead to unauthorized actions or the compromise of sensitive data. Users utilizing version 311.19 or lower of this product should be aware of the risks associated with this flaw and take appropriate measures to mitigate potential threats.
Affected Version(s)
HCL BigFix OSD Bare Metal Server WebUI <= 311.19