Multiple cross-site scripting (XSS) vulnerabilities in the administrative user interface in EMC M&R (aka Watch4Net) before 6.5u1 and ViPR SRM before 3.6.1 allow remote authenticated users to inject arbitrary web script or HTML by leveraging privileged access to set crafted values of unspecified fields.
References
Link | Resource |
---|---|
http://archives.neohapsis.com/archives/bugtraq/2015-01/0092.html | Broken Link |
http://www.securityfocus.com/bid/72259 | Third Party Advisory VDB Entry |
http://www.securitytracker.com/id/1031567 |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: dell
Published: 2015-01-21T11:00:00
Updated: 2016-12-30T16:57:01
Reserved: 2014-12-17T00:00:00
Link: CVE-2015-0513
JSON object: View
NVD Information
Status : Modified
Published: 2015-01-21T15:17:11.387
Modified: 2017-01-03T02:59:40.550
Link: CVE-2015-0513
JSON object: View
Redhat Information
No data.
CWE