3.5
CVSSv2

CVE-2013-7025

Published: 09/12/2013 Updated: 12/03/2018
CVSS v2 Base Score: 3.5 | Impact Score: 2.9 | Exploitability Score: 6.8
VMScore: 355
Vector: AV:N/AC:M/Au:S/C:N/I:P/A:N

Vulnerability Summary

Multiple cross-site scripting (XSS) vulnerabilities in ematStaticAlertTypes.jsp in the Alert Settings section in Dell SonicWALL Global Management System (GMS), Analyzer, and UMA EM5000 7.1 SP1 before Hotfix 134235 allow remote authenticated users to inject arbitrary web script or HTML via the (1) valfield_1 or (2) value_1 parameter to createNewThreshold.jsp.

Vulnerable Product Search on Vulmon Subscribe to Product

sonicwall global management system 7.1

sonicwall analyzer 7.1

sonicwall global management system 7.0

sonicwall analyzer 7.0

sonicwall uma_e5000_firmware 7.0

sonicwall uma_e5000_firmware 7.1

Exploits

Document Title: =============== Sonicwall GMS v7x - Filter Bypass & Persistent Vulnerability References (Source): ==================== wwwvulnerability-labcom/get_contentphp?id=1099 Bulletin: Dell SonicWALL GMS Service Bulletin for Cross-Site Scripting Vulnerability wwwsonicwallcom/us/shared/download/Support_Bulletin_GMS_ ...