CVE-2015-2223

Description

A cross-site scripting vulnerability exists in the web-based console management. This vulnerability has been assigned CVE-2015-2223.This issue affects the management interface of Traps, where an authenticated administrator may be tricked into injecting malicious JavaScript into the web UI interface.This issue affects Traps ESM Console version 3.2.1 and earlier

Risk Information

Base Score
4.2
MODERATE
Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:L/A:N
EPSS Score
Exploitation Probability
1.895

Associated Vulnerability

VulnerabilityOS Platform
Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability (CVE-2015-2223)NCM

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234