4.3
CVSSv2

CVE-2014-2879

Published: 17/04/2014 Updated: 09/10/2018
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 435
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Multiple cross-site scripting (XSS) vulnerabilities in Dell SonicWALL Email Security 7.4.5 and previous versions allow remote authenticated administrators to inject arbitrary web script or HTML via (1) the uploadPatch parameter to the System/Advanced page (settings_advanced.html) or (2) the uploadLicenses parameter in the License management (settings_upload_dlicense.html) page.

Vulnerable Product Search on Vulmon Subscribe to Product

sonicwall email security appliance

Exploits

Document Title: =============== Dell SonicWall EMail Security Appliance Application v745 - Multiple Vulnerabilities References (Source): ==================== wwwvulnerability-labcom/get_contentphp?id=1191 Dell (SonicWall) Security Bulletin: wwwsonicwallcom/us/shared/download/Support-Bulletin_Email-Security_Scripting_Vulnerab ...