CVE-2015-6844: XSS
Published Oct 18, 2015
·Updated
Cross-site scripting (XSS) vulnerability in Reviewer in EMC SourceOne Email Supervisor before 7.2 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Affected Software
1 affected component
EMC SourceOne Email Supervisor<=7.1
Event History
Oct 18, 2015
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-6844?
CVE-2015-6844 has a medium severity rating due to the potential for cross-site scripting attacks.
2
How do I fix CVE-2015-6844?
To mitigate CVE-2015-6844, upgrade EMC SourceOne Email Supervisor to version 7.2 or later.
3
What type of vulnerability is CVE-2015-6844?
CVE-2015-6844 is a cross-site scripting (XSS) vulnerability.
4
Who is affected by CVE-2015-6844?
CVE-2015-6844 affects users of EMC SourceOne Email Supervisor versions prior to 7.2.
5
What are the potential impacts of CVE-2015-6844?
CVE-2015-6844 may allow remote attackers to inject arbitrary web scripts or HTML, potentially leading to session hijacking.