Cross-Site Scripting Vulnerabilities in Symantec Security Information Manager
CVE-2013-1614
Currently unrated
Key Information:
- Vendor
- Symantec
- Vendor
- CVE Published:
- 8 July 2013
Summary
Multiple cross-site scripting vulnerabilities exist in the management console of the Symantec Security Information Manager appliance versions 4.7.x and 4.8.x prior to 4.8.1. These vulnerabilities may allow remote attackers to inject arbitrary web scripts or HTML content through unspecified vectors, potentially compromising the integrity and confidentiality of the application. Users of affected versions should seek to update to the latest version to mitigate these risks.
References
Timeline
Vulnerability Reserved
Vulnerability published