[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248038

 
 

909

 
 

194772

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

Multiple cross-site scripting (XSS) vulnerabilities in ManageEngine AssetExplorer (Linux)

ID: oval:org.secpod.oval:def:8320Date: (C)2013-01-07   (M)2022-10-10
Class: VULNERABILITYFamily: unix




The host is installed with ManageEngine AssetExplorer 5.6 before service pack 5614 and is prone to multiple cross-site scripting (XSS) vulnerabilities. The flaws are present in the application, which fails in properly parsing scanned xmls. Successful exploitation allows remote attackers to inject arbitrary web script or HTML.

Platform:
Linux
Product:
ManageEngine AssetExplorer
Reference:
CVE-2012-5956
CVE    1
CVE-2012-5956
CPE    1
cpe:/a:manageengine:assetexplorer

© SecPod Technologies