Cross-site scripting (XSS) vulnerability in the events page in the System iNtrusion Analysis and Reporting Environment (SNARE) for Linux agent prior to 1.7.0 allows remote malicious users to inject arbitrary web script or HTML via a logged shell command.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
intersectalliance system intrusion analysis and reporting environment 1.5.0 |
||
intersectalliance system intrusion analysis and reporting environment 1.4.1 |
||
intersectalliance system intrusion analysis and reporting environment 1.4 |
||
intersectalliance system intrusion analysis and reporting environment |