Cross-Site Scripting Vulnerability in Zoho NetFlow Analyzer
CVE-2015-2960

Currently unrated

Key Information:

Vendor

Zohocorp

Vendor
CVE Published:
9 June 2015

What is CVE-2015-2960?

A cross-site scripting vulnerability exists in the Zoho NetFlow Analyzer, specifically in build 10250 and earlier versions. This weakness allows remote attackers to inject arbitrary web scripts or HTML into the application through unspecified vectors, potentially compromising user sessions or redirecting users to malicious sites.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.