Cross-site scripting (XSS) vulnerability in the Notifications form in Red Hat Subscription Asset Manager prior to 1.2.1 allows remote malicious users to inject arbitrary web script or HTML via the username field.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
redhat subscription asset manager 1.1.0 |
||
redhat subscription asset manager 1.0.0 |
||
redhat subscription asset manager |