Stored Cross-Site Scripting (XSS) Vulnerability Affects 3DSwymer Release
CVE-2024-7932

5.4MEDIUM

Key Information:

Status
Vendor
CVE Published:
2 September 2024

What is CVE-2024-7932?

The vulnerability present in 3DDashboard, part of the 3DSwymer suite, enables an attacker to exploit stored Cross-site Scripting (XSS) issues, where malicious script code can be executed during a user's browser session. This occurs in the context of the 3DEXPERIENCE R2024x release, potentially compromising user interactions and data integrity within the application environment. It is critical for organizations utilizing affected systems to implement necessary security measures to mitigate exposure to such attacks.

Affected Version(s)

3DSwymer Release 3DEXPERIENCE R2024x Golden

References

CVSS V3.1

Score:
5.4
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
Required
Scope:
Changed

Timeline

  • Vulnerability published

.