← Back to CVE List

CVE-2023-4802

Published: 2023-09-13T16:15Z
Last Modified: 2024-11-21T08:35Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
A reflected cross-site scripting vulnerability in the UpdateInstalledSoftware endpoint of the Insider Threat Management (ITM) Server's web console could be used by an authenticated administrator to run arbitrary javascript within another web console administrator's browser. All versions prior to 7.14.3.69 are affected. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt