CVE-2024-10923
Severity CVSS v4.0:
HIGH
Type:
CWE-79
Cross-Site Scripting (XSS)
Publication date:
12/11/2024
Last modified:
13/11/2024
Description
Improper Neutralization of Input During Web Page Generation (XSS or &#39;Cross-site Scripting&#39;) vulnerability in OpenText™ ALM Octane Management allows Stored XSS. The vulnerability could result in a remote code execution attack. <br />
<br />
This issue affects ALM Octane Management: from 16.2.100 through 24.4.
Impact
Base Score 4.0
8.60
Severity 4.0
HIGH
Base Score 3.x
5.90
Severity 3.x
MEDIUM



