Cross-Site Scripting Vulnerability in Symantec SecurityExpressions Audit and Compliance Server
CVE-2009-3029

Currently unrated

Key Information:

Vendor
Symantec
Vendor
CVE Published:
15 October 2009

Summary

A Cross-Site Scripting (XSS) vulnerability exists in the console of Symantec SecurityExpressions Audit and Compliance Server, allowing remote authenticated users to inject arbitrary web scripts or HTML through manipulated external client inputs. This can lead to the execution of malicious scripts in the context of the user's session, potentially compromising security and data integrity.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.