CVE-2014-3432 Information

Description

Cross-site scripting (XSS) vulnerability in the management console in Symantec Data Insight 3.x and 4.x before 4.5 allows remote attackers to inject arbitrary web script or HTML via an unspecified form field.

Reference

http://secunia.com/advisories/59538 http://secunia.com/advisories/59561 http://www.securityfocus.com/bid/68160 http://www.securitytracker.com/id/1030472 http://www.symantec.com/security_response/securityupdates/detail.jsp?fid=security_advisory&pvid=security_advisory&year=&suid=20140625_00

Share on: