Cross-Site Scripting Vulnerability in Symantec Data Insight Management Console
CVE-2014-3432

Currently unrated

Key Information:

Vendor
Symantec
Vendor
CVE Published:
27 June 2014

Summary

A cross-site scripting vulnerability exists within the management console of Symantec Data Insight versions 3.x and 4.x prior to 4.5. This flaw allows remote attackers to inject arbitrary web scripts or HTML code via an unspecified form field. Successful exploitation of this vulnerability can lead to unauthorized access and manipulation of data, posing significant risks to the security of the affected systems.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.