CVE-2014-2975: XSS
Cross-site scripting (XSS) vulnerability in php/useraccount.php in Silver Peak VX before 6.2.4 allows remote attackers to inject arbitrary web script or HTML via the userid parameter.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2014-2975?
CVE-2014-2975 is rated as a medium severity vulnerability due to its ability to allow remote attackers to execute arbitrary scripts.
How do I fix CVE-2014-2975?
To mitigate CVE-2014-2975, upgrade to Silver Peak VX version 6.2.4 or later where the vulnerability is resolved.
What systems are affected by CVE-2014-2975?
CVE-2014-2975 affects Silver Peak VX versions prior to 6.2.4 and specifically version 6.2.2.0_47968.
What type of vulnerability is CVE-2014-2975?
CVE-2014-2975 is a cross-site scripting (XSS) vulnerability that allows the injection of arbitrary web scripts or HTML.
Can CVE-2014-2975 be exploited remotely?
Yes, CVE-2014-2975 can be exploited remotely, allowing attackers to execute scripts on affected systems.