First published: Tue Sep 27 2016(Updated: )
Cross-site scripting (XSS) vulnerability in Huawei Policy Center before V100R003C10SPC020 allows remote authenticated users to inject arbitrary web script or HTML via vectors related to "special characters on pages."
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Huawei Policy Center | =v100r003c00 | |
Huawei Policy Center | =v100r003c10 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-4058 is classified as a medium severity vulnerability.
To fix CVE-2016-4058, update Huawei Policy Center to version V100R003C10SPC020 or later.
CVE-2016-4058 affects users of Huawei Policy Center versions before V100R003C10SPC020.
CVE-2016-4058 is a cross-site scripting (XSS) vulnerability.
Yes, CVE-2016-4058 can be exploited by remote authenticated users who can inject arbitrary web scripts.