CVE-2014-3433 Information

Description

Cross-site scripting (XSS) vulnerability in the management console in Symantec Data Insight 3.x and 4.x before 4.5 allows remote attackers to inject arbitrary web script or HTML via an unspecified form field related to an \HTML script injection\ issue.

Reference

http://www.securityfocus.com/bid/68161 http://www.securitytracker.com/id/1030472 http://www.symantec.com/security_response/securityupdates/detail.jsp?fid=security_advisory&pvid=security_advisory&year=&suid=20140625_00

Share on: