Cross-site scripting (XSS) vulnerability in the management interface in Huawei OceanStor ISM before V200R001C04SPC200 allows remote attackers to inject arbitrary web script or HTML via the loginName parameter to cgi-bin/doLogin_CgiEntry and possibly other unspecified vectors.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2016-09-26T14:00:00
Updated: 2024-08-06T01:43:38.434Z
Reserved: 2016-08-18T00:00:00
Link: CVE-2016-6840
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2016-09-26T14:59:07.243
Modified: 2016-09-28T13:54:57.583
Link: CVE-2016-6840
Redhat
No data.