{"resultsPerPage":1,"startIndex":0,"totalResults":1,"format":"NVD_CVE","version":"2.0","timestamp":"2026-06-24T23:52:25.312","vulnerabilities":[{"cve":{"id":"CVE-2024-4174","sourceIdentifier":"cve-coordination@incibe.es","published":"2024-04-25T12:15:08.440","lastModified":"2026-06-17T08:01:16.393","vulnStatus":"Deferred","cveTags":[],"descriptions":[{"lang":"en","value":"Cross-Site Scripting (XSS) vulnerability in Hyperion Web Server affecting version 2.0.15. This vulnerability could allow an attacker to execute malicious Javascript code on the client by injecting that code into the URL."},{"lang":"es","value":"Vulnerabilidad de Cross-Site Scripting (XSS) en Hyperion Web Server que afecta a la versión 2.0.15. Esta vulnerabilidad podría permitir que un atacante ejecute código Javascript malicioso en el cliente inyectando ese código en la URL."}],"affected":[{"source":"cve-coordination@incibe.es","affectedData":[{"vendor":"Hyperion","product":"Hyperion Web Server","defaultStatus":"unaffected","versions":[{"version":"2.0.15","status":"affected"}]}]},{"source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","affectedData":[{"vendor":"hyperion","product":"hyperion_web_server","defaultStatus":"unknown","cpes":["cpe:2.3:a:hyperion:hyperion_web_server:*:*:*:*:*:*:*:*"],"versions":[{"version":"2.0.15","status":"affected"}]}]}],"metrics":{"cvssMetricV31":[{"source":"cve-coordination@incibe.es","type":"Secondary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N","baseScore":5.4,"baseSeverity":"MEDIUM","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"UNCHANGED","confidentialityImpact":"LOW","integrityImpact":"LOW","availabilityImpact":"NONE"},"exploitabilityScore":2.8,"impactScore":2.5}],"ssvcV203":[{"source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","ssvcData":{"timestamp":"2024-04-25T19:37:32.653403Z","id":"CVE-2024-4174","options":[{"exploitation":"none"},{"automatable":"no"},{"technicalImpact":"partial"}],"role":"CISA Coordinator","version":"2.0.3"}}]},"weaknesses":[{"source":"cve-coordination@incibe.es","type":"Secondary","description":[{"lang":"en","value":"CWE-79"}]}],"references":[{"url":"https://www.incibe.es/en/incibe-cert/notices/aviso/multiple-vulnerabilities-hyperion-web-server","source":"cve-coordination@incibe.es"},{"url":"https://www.incibe.es/en/incibe-cert/notices/aviso/multiple-vulnerabilities-hyperion-web-server","source":"af854a3a-2127-422b-91ae-364da2661108"}]}}]}