XSS Vulnerability in Symantec NetBackup OpsCenter
CVE-2015-6549

Currently unrated

Key Information:

Vendor

Symantec

Vendor
CVE Published:
6 October 2015

What is CVE-2015-6549?

A cross-site scripting (XSS) vulnerability exists in the application console of Symantec NetBackup OpsCenter in versions before 7.7.1. This flaw enables remote authenticated users to inject arbitrary web scripts or HTML through unspecified vectors, potentially compromising user sessions or redirecting users to malicious sites. It is essential for organizations utilizing this software to ensure they are updated to a secure version to prevent exploitation.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.