IsilonSD Management Server 1.1.0 contains a cross-site scripting vulnerability while uploading an OVA file. A remote attacker can trick an admin user to potentially exploit this vulnerability to execute malicious HTML or JavaScript code in the context of the admin user.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://seclists.org/fulldisclosure/2019/Apr/16 |
History
No history.
MITRE
Status: PUBLISHED
Assigner: dell
Published: 2019-04-17T13:32:35.525018Z
Updated: 2024-09-17T00:36:59.730Z
Reserved: 2019-01-03T00:00:00
Link: CVE-2019-3708
Vulnrichment
No data.
NVD
Status : Modified
Published: 2019-04-17T14:29:03.463
Modified: 2019-10-09T23:49:23.913
Link: CVE-2019-3708
Redhat
No data.