"HCL AppScan Enterprise is susceptible to Cross-Site Scripting while importing a specially crafted test policy."
The product does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output that is used as a web page that is served to other users.
Link | Tags |
---|---|
https://support.hcltechsw.com/csm?id=kb_article&sysparm_article=KB0080574 | vendor advisory |
https://support.hcltechsw.com/csm?id=kb_article&sys_id=cd5030b4dbbd101855f38d6d13961958 | vendor advisory |