Cross-site Scripting (XSS) vulnerability in NetApp OnCommand System Manager before 2.2 allows remote attackers to inject arbitrary web script or HTML via the 'full-name' and 'comment' fields.
References
Link | Resource |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/84061 | Third Party Advisory VDB Entry |
https://exchange.xforce.ibmcloud.com/vulnerabilities/84060 | Third Party Advisory VDB Entry |
http://www.securityfocus.com/bid/59688 | Third Party Advisory VDB Entry |
Configurations
Information
Published : 2020-01-29 14:15
Updated : 2020-01-31 06:19
NVD link : CVE-2013-3320
Mitre link : CVE-2013-3320
JSON object : View
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Products Affected
netapp
- oncommand_system_manager