CVE-2017-14755: XSS
OpenText Document Sciences xPression (formerly EMC Document Sciences xPression) v4.5SP1 Patch 13 (older versions might be affected as well) is prone to Cross-Site Scripting: /xAdmin/html/XPressoDoc, parameter: categoryId.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2017-14755?
CVE-2017-14755 is considered a high severity vulnerability due to its potential for Cross-Site Scripting attacks.
How do I fix CVE-2017-14755?
To fix CVE-2017-14755, update OpenText Document Sciences xPression to version 4.5SP1 Patch 13 or later.
What software is affected by CVE-2017-14755?
CVE-2017-14755 affects OpenText Document Sciences xPression v4.5SP1 Patch 13 and potentially older versions.
What type of vulnerability is CVE-2017-14755?
CVE-2017-14755 is a Cross-Site Scripting (XSS) vulnerability affecting certain parameters in the application.
Can CVE-2017-14755 lead to data breaches?
Yes, exploitation of CVE-2017-14755 can lead to data breaches by allowing attackers to execute malicious scripts in the user's browser.