An administrative user of WebReports may perform a Cross Site Scripting (XSS) and/or Man in the Middle (MITM) exploit through SAML configuration.
| Software | From | Fixed in |
|---|---|---|
| hcltech / bigfix_platform | 9.5 | 9.5.24 |
| hcltech / bigfix_platform | 10.0.0 | 10.0.11 |
| hcltech / bigfix_platform | 11.0.0 | 11.0.1.x |