Multiple GET parameters in the vulnerability scan scheduler of AlienVault OSSIM and USM before 5.3.2 are vulnerable to reflected XSS.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2016-10-28 08:59
Updated : 2016-11-28 12:40
NVD link : CVE-2016-8583
Mitre link : CVE-2016-8583
JSON object : View
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Products Affected
alienvault
- unified_security_management
- open_source_security_information_and_event_management