Cross-Site Scripting Vulnerability in Symantec SecurityExpressions Audit and Compliance Server
CVE-2009-3029
Currently unrated
Key Information:
- Vendor
Symantec
- Vendor
- CVE Published:
- 15 October 2009
What is CVE-2009-3029?
A Cross-Site Scripting (XSS) vulnerability exists in the console of Symantec SecurityExpressions Audit and Compliance Server, allowing remote authenticated users to inject arbitrary web scripts or HTML through manipulated external client inputs. This can lead to the execution of malicious scripts in the context of the user's session, potentially compromising security and data integrity.