ZeroHour

CVE-2018-1246

CVSS 3.0
6.1 medium
EPSS
1%p64
Published
()
Modified
Description

Dell EMC Unity and UnityVSA contains reflected cross-site scripting vulnerability. A remote unauthenticated attacker could potentially exploit this vulnerability by tricking a victim application user to supply malicious HTML or Java Script code to Unisphere, which is then reflected back to the victim and executed by the web browser.

Vendors
dell
Products
emc unity operating environment, emc unityvsa operating environment
Weakness
CWE-79
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.