cve/2024/CVE-2024-3323.md
2025-09-29 21:09:30 +02:00

1.1 KiB

CVE-2024-3323

Description

Cross Site Scripting in UI Request/Response Validation in TIBCO JasperReports Server 8.0.4 and 8.2.0 allows allows for the injection of malicious executable scripts into the code of a trusted application that may lead to stealing the user's active session cookie via sending malicious link, enticing the user to interact.

POC

Reference

Github

No PoCs found on GitHub currently.