Loading HuntDB...

GHSA-2mr3-36qv-4rmf

GitHub Security Advisory

⚠ Unreviewed MODERATE Has CVE

Advisory Details

There is a cross-site scripting vulnerability in the pool
configuration component of the management UI of Absolute Secure Access prior to
13.06. Attackers with system administrator permissions can pass a limited
length script to be run by another administrator. The scope is unchanged, there
is no loss of confidentiality. Impact to system integrity is high, impact to
system availability is none.

Related CVEs

Key Information

GHSA ID
GHSA-2mr3-36qv-4rmf
Published
June 20, 2024 6:34 PM
Last Modified
June 20, 2024 6:34 PM
CVSS Score
5.0 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: September 21, 2025 6:29 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.