CVE-2015-2169: XSS
Cross-site scripting (XSS) vulnerability in Zoho ManageEngine AssetExplorer 6.1 service pack 6112 allows remote attackers to inject arbitrary web script or HTML via a Publisher registry entry, which is not properly handled when the machine is scanned.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-2169?
CVE-2015-2169 is classified as a moderate severity vulnerability due to its impact on web security through cross-site scripting.
How do I fix CVE-2015-2169?
To resolve CVE-2015-2169, update to the latest version of Zoho ManageEngine AssetExplorer that addresses this vulnerability.
Who is affected by CVE-2015-2169?
CVE-2015-2169 affects users of Zoho ManageEngine AssetExplorer version 6.1 with service pack 6112 installed.
What type of attack is CVE-2015-2169?
CVE-2015-2169 involves a cross-site scripting (XSS) attack that allows attackers to inject arbitrary web scripts into the application.
When was CVE-2015-2169 disclosed?
CVE-2015-2169 was disclosed in June 2015.