CVE-2024-47854

Severity CVSS v4.0:
Pending analysis
Type:
CWE-79 Cross-Site Scripting (XSS)
Publication date:
04/10/2024
Last modified:
17/10/2025

Description

An XSS vulnerability was discovered in Veritas Data Insight before 7.1. It allows a remote attacker to inject an arbitrary web script into an HTTP request that could reflect back to an authenticated user without sanitization if executed by that user.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:veritas:data_insight:*:*:*:*:*:*:*:* 6.0 (including) 7.1 (excluding)