Cross-site scripting (XSS) vulnerability in the console in Symantec SecurityExpressions Audit and Compliance Server 4.1.1, 4.1, and earlier allows remote authenticated users to inject arbitrary web script or HTML via "external client input" that triggers crafted error messages.
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2009-10-15T10:00:00
Updated: 2013-02-07T10:00:00
Reserved: 2009-08-31T00:00:00
Link: CVE-2009-3029
JSON object: View
NVD Information
Status : Modified
Published: 2009-10-15T10:30:00.453
Modified: 2013-02-07T04:21:27.827
Link: CVE-2009-3029
JSON object: View
Redhat Information
No data.
CWE