CVE-2024-47854: Veritas Data Insight
Medium severity, CVSS 6.1. EPSS: 0.8% chance of exploitation in the next 30 days.
An XSS vulnerability was discovered in Veritas Data Insight before 7.1. It allows a remote attacker to inject an arbitrary web script into an HTTP request that could reflect back to an authenticated user without sanitization if executed by that user.
Affected products
- Veritas Data Insight: from 6.0, before 7.1 (fixed in 7.1)
Published 2024-10-04. Last modified 2026-06-17.