SCG Policy Manager, all versions, contains an overly permissive Cross-Origin Resource Policy (CORP) vulnerability. A remote unauthenticated attacker could potentially exploit this vulnerability, leading to the execution of malicious actions on the application in the context of the authenticated user.
References
Configurations
No configuration.
History
21 Nov 2024, 09:23
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
|
References | () https://www.dell.com/support/kbdoc/en-us/000225956/dsa-2024-254-security-update-for-dell-secure-connect-gateway-policy-manager-vulnerabilities - |
13 Jun 2024, 15:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-06-13 15:15
Updated : 2024-11-21 09:23
NVD link : CVE-2024-37131
Mitre link : CVE-2024-37131
CVE.ORG link : CVE-2024-37131
JSON object : View
Products Affected
No product.
CWE
CWE-942
Permissive Cross-domain Policy with Untrusted Domains