Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.140135
Category:Web application abuses
Title:Dell EMC Isilon InsightIQ <= 3.1 XSS Vulnerability
Summary:Dell EMC Isilon InsightIQ is prone to an unspecified cross-site; scripting (XSS) vulnerability because it fails to sanitize user-supplied input.
Description:Summary:
Dell EMC Isilon InsightIQ is prone to an unspecified cross-site
scripting (XSS) vulnerability because it fails to sanitize user-supplied input.

Vulnerability Impact:
An attacker may leverage this issue to execute arbitrary script
code in the browser of an unsuspecting user in the context of the affected site. This may allow
the attacker to steal cookie-based authentication credentials and launch other attacks.

Affected Software/OS:
Dell EMC Isilon InsightIQ prior to version 3.1.

Solution:
Update to version 3.1 or later.

CVSS Score:
4.3

CVSS Vector:
AV:N/AC:M/Au:N/C:N/I:P/A:N

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2014-4628
Bugtraq: 20141212 ESA-2014-164: EMC Isilon InsightIQ Cross-Site Scripting Vulnerability (Google Search)
http://archives.neohapsis.com/archives/bugtraq/2014-12/0075.html
CopyrightCopyright (C) 2017 Greenbone AG

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.