First published: Sat Oct 03 2015(Updated: )
Cross-site scripting (XSS) vulnerability in an application console in the server in Symantec NetBackup OpsCenter before 7.7.1 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.
Credit: secure@symantec.com
Affected Software | Affected Version | How to fix |
---|---|---|
Symantec NetBackup OpsCenter | <=7.7.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-6549 is classified as a medium severity vulnerability due to the potential for cross-site scripting attacks.
To fix CVE-2015-6549, upgrade Symantec NetBackup OpsCenter to version 7.7.1 or later.
CVE-2015-6549 affects users of Symantec NetBackup OpsCenter versions prior to 7.7.1.
CVE-2015-6549 is a cross-site scripting (XSS) vulnerability that allows injection of arbitrary web scripts or HTML.
Yes, CVE-2015-6549 can be exploited remotely by authenticated users.