Описание
A cross-site scripting (XSS) flaw was found in how an organization name is displayed in Satellite 5, before 5.8. A user able to change an organization's name could exploit this flaw to perform XSS attacks against other Satellite users.
Ссылки
- Third Party AdvisoryVDB Entry
- Vendor Advisory
- Issue TrackingVendor Advisory
- Third Party AdvisoryVDB Entry
- Vendor Advisory
- Issue TrackingVendor Advisory
Уязвимые конфигурации
EPSS
3.5 Low
CVSS3
5.4 Medium
CVSS3
3.5 Low
CVSS2
Дефекты
Связанные уязвимости
A cross-site scripting (XSS) flaw was found in how an organization name is displayed in Satellite 5, before 5.8. A user able to change an organization's name could exploit this flaw to perform XSS attacks against other Satellite users.
A cross-site scripting (XSS) flaw was found in how an organization name is displayed in Satellite 5, before 5.8. A user able to change an organization's name could exploit this flaw to perform XSS attacks against other Satellite users.
EPSS
3.5 Low
CVSS3
5.4 Medium
CVSS3
3.5 Low
CVSS2