HomeHcltechCVE-2024-42210

CVE-2024-42210

HIGH
7.6CVSS
Published: 2026-03-19
Updated: 2026-03-23
AI Analysis

Description

A Stored cross-site scripting (XSS) vulnerability affects HCL Unica Marketing Operations v12.1.8 and lower.  Stored cross-site scripting (also known as second-order or persistent XSS) arises when an application receives data from an untrusted source and includes that data within its later HTTP responses in an unsafe way.

CVSS Metrics

Vector
CVSS:3.1/AV:N/AC:H/PR:H/UI:R/S:C/C:H/I:H/A:H
Attack Vector
network
Complexity
high
Privileges
high
User Action
required
Scope
changed
Confidentiality
high
Integrity
high
Availability
high
Weaknesses
CWE-79

Metadata

Primary Vendor
HCLTECH
Published
3/19/2026
Last Modified
3/23/2026
Source
NIST NVD
Note: Verify all details with official vendor sources before applying patches.

Affected Products

hcltech : unica

AI-Powered Remediation

Generate remediation guidance or a C-suite brief for this vulnerability.

Executive Intelligence Brief

CVE-CVE-2024-42210 | HIGH Severity | CVEDatabase.com | CVEDatabase.com