Vulnerability Details CVE-2024-28979
Dell OpenManage Enterprise, versions 4.1.0 and older, contains an Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to Script injection.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 40.3%
CVSS Severity
CVSS v3 Score 5.1
Products affected by CVE-2024-28979
-
cpe:2.3:a:dell:openmanage_enterprise:-
-
cpe:2.3:a:dell:openmanage_enterprise:3.1.0
-
cpe:2.3:a:dell:openmanage_enterprise:3.10
-
cpe:2.3:a:dell:openmanage_enterprise:3.5
-
cpe:2.3:a:dell:openmanage_enterprise:3.6.1
-
cpe:2.3:a:dell:openmanage_enterprise:3.8.4
-
cpe:2.3:a:dell:openmanage_enterprise:4.0