4.3
CVSSv2

CVE-2013-1097

Published: 17/06/2013 Updated: 07/11/2013
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Cross-site scripting (XSS) vulnerability in a ZCC page in njwc.jar in Novell ZENworks Configuration Management (ZCM) 11.2 prior to 11.2.3a Monthly Update 1 allows remote malicious users to inject arbitrary web script or HTML via vectors involving an onload event.

Vulnerable Product Search on Vulmon Subscribe to Product

novell zenworks configuration management 11.2.1

novell zenworks configuration management 11.2.2

novell zenworks configuration management 11.2.3

novell zenworks configuration management 11.2