4.3
CVSSv2

CVE-2009-4647

Published: 19/02/2010 Updated: 17/08/2017
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Cross-site scripting (XSS) vulnerability in Accellion Secure File Transfer Appliance prior to 7_0_296 allows remote malicious users to inject arbitrary web script or HTML via the username parameter, which is not properly handled when the administrator views audit logs.

Vulnerable Product Search on Vulmon Subscribe to Product

accellion secure file transfer appliance 7_0_135

accellion secure file transfer appliance 7_0_259

accellion secure file transfer appliance 7_0_178

accellion secure file transfer appliance 7_0_189