Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2024-2166


Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Forcepoint Email Security (Real Time Monitor modules) allows Reflected XSS.This issue affects Email Security: before 8.5.5 HF003.


Published

2024-09-04T22:15:04.260

Last Modified

2024-09-12T17:19:43.607

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 8.8 (HIGH)

Weaknesses
  • Type: Secondary
    CWE-79
  • Type: Primary
    CWE-79

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application forcepoint email_security < 8.5.5 Yes
Application forcepoint email_security 8.5.5 Yes

References