Reflected XSS Vulnerability in Quest Policy Authority by Quest Software
CVE-2020-35723
5.4MEDIUM
What is CVE-2020-35723?
A reflected XSS vulnerability in Quest Policy Authority 8.1.2.200 permits attackers to execute malicious scripts in the context of users' browsers. This is achieved through crafted links to the ReportPreview.do file using the referer parameter. Users of this version are at risk as it involves products that are no longer supported, extending the potential for exploitation.