Vulnerability Description
Prism Central versions prior to 2024.3.1 are vulnerable to a stored cross-site scripting attack via the Events component, allowing an attacker to hijack a victim user’s session and perform actions in their security context.
Related Weaknesses (CWE)
References
FAQ
What is CVE-2024-12223?
CVE-2024-12223 is a documented vulnerability. Prism Central versions prior to 2024.3.1 are vulnerable to a stored cross-site scripting attack via the Events component, allowing an attacker to hijack a victim user’s session and perform actions in ...
How severe is CVE-2024-12223?
CVSS scoring is not yet available for CVE-2024-12223. Check NVD for updates.
Is there a patch for CVE-2024-12223?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.