4.8
CVSSv3

CVE-2022-26483

Published: 04/03/2022 Updated: 12/03/2022
CVSS v2 Base Score: 3.5 | Impact Score: 2.9 | Exploitability Score: 6.8
CVSS v3 Base Score: 4.8 | Impact Score: 2.7 | Exploitability Score: 1.7
VMScore: 312
Vector: AV:N/AC:M/Au:S/C:N/I:P/A:N

Vulnerability Summary

An issue exists in Veritas InfoScale Operations Manager (VIOM) prior to 7.4.2 Patch 600 and 8.x prior to 8.0.0 Patch 100. A reflected cross-site scripting (XSS) vulnerability in admin/cgi-bin/listdir.pl allows authenticated remote administrators to inject arbitrary web script or HTML into an HTTP GET parameter (which reflect the user input without sanitization).

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

veritas infoscale operations manager

veritas infoscale operations manager 8.0.0