First published: Sat Mar 24 2018(Updated: )
BMC Remedy Action Request (AR) System 9.0 before 9.0.00 Service Pack 2 hot fix 1 has persistent XSS.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
BMC Remedy Action Request System | =9.0.00 | |
BMC Remedy Action Request System | =9.0.00.001 | |
BMC Remedy Action Request System | =9.0.00.002 | |
BMC Remedy Action Request System | =9.0.01 | |
BMC Remedy Action Request System | =9.0.01.001 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-9257 is a vulnerability in BMC Remedy Action Request (AR) System 9.0 before 9.0.00 Service Pack 2 hot fix 1 that allows for persistent XSS attacks.
CVE-2015-9257 has a severity level of medium (6.1 out of 10).
BMC Remedy Action Request System versions 9.0.00, 9.0.00.001, 9.0.00.002, 9.0.01, and 9.0.01.001 are affected by CVE-2015-9257.
To fix CVE-2015-9257, update your BMC Remedy Action Request System to version 9.0.00 Service Pack 2 hot fix 1 or later.
You can find more information about CVE-2015-9257 in the documentation provided by BMC: https://docs.bmc.com/docs/display/public/ars9000/Cross+site+scripting+%28XSS%29+in+Remedy+9.0%2C+9.0+Service+Pack+1