CVE-2024-37345
- EPSS 0.3%
- Published 20.06.2024 17:15:51
- Last modified 21.11.2024 09:23:41
There is a cross-site scripting vulnerability in the Secure Access administrative UI of Absolute Secure Access prior to version 13.06. Attackers can pass a limited-length script to the administrative UI which is then stored where an administrator can...
CVE-2024-37344
- EPSS 0.19%
- Published 20.06.2024 17:15:51
- Last modified 21.11.2024 09:23:41
There is a cross-site scripting vulnerability in the Policy management UI of Absolute Secure Access prior to version 13.06. Attackers with system administrator permissions can interfere with another system administrator’s use of the policy management...
CVE-2024-37343
- EPSS 0.62%
- Published 20.06.2024 17:15:50
- Last modified 21.11.2024 09:23:41
There is a cross-site scripting vulnerability in the Secure Access administrative console of Absolute Secure Access prior to version 13.06. Attackers with valid tunnel credentials can pass a limited-length script to the administrative console which i...