Cross-site scripting (XSS) vulnerability in Apps Manager in Pivotal Cloud Foundry (PCF) Elastic Runtime before 1.6.32 and 1.7.x before 1.7.8 allows remote attackers to inject arbitrary web script or HTML via unspecified input that improperly interacts with the AngularJS framework.
References
Link | Resource |
---|---|
http://www.securityfocus.com/bid/91677 | Third Party Advisory VDB Entry |
https://pivotal.io/security/cve-2016-0926 | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: dell
Published: 2016-09-18T01:00:00
Updated: 2016-11-25T19:57:01
Reserved: 2015-12-17T00:00:00
Link: CVE-2016-0926
JSON object: View
NVD Information
Status : Analyzed
Published: 2016-09-18T02:59:06.933
Modified: 2019-02-20T19:27:22.113
Link: CVE-2016-0926
JSON object: View
Redhat Information
No data.
CWE