Vulnerability Description
Dell Unity, version(s) 5.3 and prior, contain(s) an Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Information exposure.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Dell | Unity Operating Environment | < 5.4.0.0.5.094 |
Related Weaknesses (CWE)
References
- https://www.dell.com/support/kbdoc/en-us/000222010/dsa-2024-042-dell-unity-dell-Vendor Advisory
- https://www.dell.com/support/kbdoc/en-us/000222010/dsa-2024-042-dell-unity-dell-Vendor Advisory
FAQ
What is CVE-2024-0169?
CVE-2024-0169 is a vulnerability with a CVSS score of 5.7 (MEDIUM). Dell Unity, version(s) 5.3 and prior, contain(s) an Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability. A low privileged attacker with remote access cou...
How severe is CVE-2024-0169?
CVE-2024-0169 has been rated MEDIUM with a CVSS base score of 5.7/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2024-0169?
Check the references section above for vendor advisories and patch information. Affected products include: Dell Unity Operating Environment.