Description
A reflected cross-site scripting (XSS) vulnerability in the Symantec Layer7 API Management OAuth Toolkit (OTK) allows a remote attacker to craft a malicious URL for the OTK web UI and target OTK users with phishing attacks or other social engineering techniques. A successful attack allows injecting malicious code into the OTK web UI client application.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-17567 | A reflected cross-site scripting (XSS) vulnerability in the Symantec Layer7 API Management OAuth Toolkit (OTK) allows a remote attacker to craft a malicious URL for the OTK web UI and target OTK users with phishing attacks or other social engineering techniques. A successful attack allows injecting malicious code into the OTK web UI client application. |
References
History
No history.
Status: PUBLISHED
Assigner: symantec
Published:
Updated: 2024-08-03T22:40:31.587Z
Reserved: 2021-04-13T00:00:00.000Z
Link: CVE-2021-30650
No data.
Status : Modified
Published: 2022-02-18T18:15:09.307
Modified: 2024-11-21T06:04:21.553
Link: CVE-2021-30650
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD