Описание
IsilonSD Management Server 1.1.0 contains a cross-site scripting vulnerability while registering vCenter servers. A remote attacker can trick an admin user to potentially exploit this vulnerability to execute malicious HTML or JavaScript code in the context of the admin user.
Ссылки
- Mailing ListThird Party Advisory
- Mailing ListThird Party Advisory
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:dell:emc_isilonsd_management_server:1.1.0:*:*:*:*:*:*:*
EPSS
Процентиль: 67%
0.00545
Низкий
8.3 High
CVSS3
9.6 Critical
CVSS3
9.3 Critical
CVSS2
Дефекты
CWE-79
Связанные уязвимости
CVSS3: 9.6
github
больше 3 лет назад
IsilonSD Management Server 1.1.0 contains a cross-site scripting vulnerability while registering vCenter servers. A remote attacker can trick an admin user to potentially exploit this vulnerability to execute malicious HTML or JavaScript code in the context of the admin user.
EPSS
Процентиль: 67%
0.00545
Низкий
8.3 High
CVSS3
9.6 Critical
CVSS3
9.3 Critical
CVSS2
Дефекты
CWE-79