Vulnerability Details CVE-2024-42210
A Stored cross-site scripting (XSS) vulnerability affects HCL Unica Marketing Operations v12.1.8 and lower. Stored cross-site scripting (also known as second-order or persistent XSS) arises when an application receives data from an untrusted source and includes that data within its later HTTP responses in an unsafe way.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 11.0%
CVSS Severity
CVSS v3 Score 7.6
Products affected by CVE-2024-42210
-
cpe:2.3:a:hcltech:unica:-
-
cpe:2.3:a:hcltech:unica:12.0.0
-
cpe:2.3:a:hcltech:unica:12.1.0
-
cpe:2.3:a:hcltech:unica:12.1.1
-
cpe:2.3:a:hcltech:unica:12.1.2
-
cpe:2.3:a:hcltech:unica:12.1.3
-
cpe:2.3:a:hcltech:unica:12.1.4
-
cpe:2.3:a:hcltech:unica:12.1.5
-
cpe:2.3:a:hcltech:unica:12.1.6
-
cpe:2.3:a:hcltech:unica:12.1.7
-
cpe:2.3:a:hcltech:unica:12.1.8