CVE-2017-14383
04.01.2018, 06:29
In Dell EMC VNX2 versions prior to Operating Environment for File 8.1.9.217 and VNX1 versions prior to Operating Environment for File 7.1.80.8, a web server error page in VNX Control Station is impacted by a reflected cross-site scripting vulnerability. A remote unauthenticated attacker could potentially exploit this vulnerability to execute arbitrary HTML code in the user's browser session in the context of the affected web application.
Vendor | Product | Version |
---|---|---|
dell | emc_vnx2_firmware | 𝑥 < 8.1.9.217 |
dell | emc_vnx1_firmware | 𝑥 < 7.1.80.8 |
𝑥
= Vulnerable software versions