An issue was discovered in Zoho ManageEngine Netflow Analyzer Professional 7.0.0.2. XSS exists in the Administration zone /netflow/jspui/scheduleConfig.jsp file via these GET parameters: devSrc, emailId, excWeekModify, filterFlag, getFilter, mailReport, mset, popup, rep_schedule, rep_Type, schDesc, schName, schSource, selectDeviceDone, task, val10, and val11.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2019-05-17T14:05:22
Updated: 2024-08-04T21:31:37.546Z
Reserved: 2019-02-18T00:00:00
Link: CVE-2019-8927
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2019-05-17T15:29:00.223
Modified: 2019-05-17T17:25:33.603
Link: CVE-2019-8927
Redhat
No data.