Cross-Site Scripting Vulnerability in Symantec SecurityExpressions Audit and Compliance Server
CVE-2009-3029
Currently unrated
Key Information:
- Vendor
- Symantec
- Vendor
- CVE Published:
- 15 October 2009
Summary
A Cross-Site Scripting (XSS) vulnerability exists in the console of Symantec SecurityExpressions Audit and Compliance Server, allowing remote authenticated users to inject arbitrary web scripts or HTML through manipulated external client inputs. This can lead to the execution of malicious scripts in the context of the user's session, potentially compromising security and data integrity.
References
Timeline
Vulnerability published
Vulnerability Reserved