Multiple cross-site scripting (XSS) vulnerabilities in Altitude uAgent in Altitude uCI (Unified Customer Interaction) 7.5 allow remote attackers to inject arbitrary web script or HTML via (1) an email hyperlink or the (2) style parameter in the image attribute section.
References
Link | Resource |
---|---|
http://packetstormsecurity.com/files/129372/Altitude-uAgent-Altitude-uCI-7.5-XSS.html | Exploit |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2014-12-05T15:00:00
Updated: 2014-12-05T14:57:01
Reserved: 2014-12-02T00:00:00
Link: CVE-2014-9212
JSON object: View
NVD Information
Status : Analyzed
Published: 2014-12-05T15:59:07.947
Modified: 2014-12-06T01:38:31.303
Link: CVE-2014-9212
JSON object: View
Redhat Information
No data.
CWE