First published: Thu Oct 02 2014(Updated: )
Cross-site scripting (XSS) vulnerability in Exinda WAN Optimization Suite 7.0.0 (2160) allows remote attackers to inject arbitrary web script or HTML via the tabsel parameter to admin/launch.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Exinda WAN Optimization Suite | =7.0.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2014-7157 is classified as a medium severity cross-site scripting vulnerability.
To fix CVE-2014-7157, upgrade to Exinda WAN Optimization Suite version later than 7.0.0 that addresses this vulnerability.
CVE-2014-7157 can facilitate remote attackers injecting arbitrary web scripts or HTML into the application.
CVE-2014-7157 specifically affects Exinda WAN Optimization Suite version 7.0.0.
The tabsel parameter to admin/launch is exploited in CVE-2014-7157.