CVE-2017-17678: XSS
Published May 19, 2021
·Updated
BMC Remedy Mid Tier 9.1SP3 is affected by cross-site scripting (XSS). A DOM-based cross-site scripting vulnerability was discovered in a legacy utility.
Affected Software
1 affected component
BMC Remedy Mid-Tier=9.1-sp3
Event History
May 19, 2021
CVE Published
via MITRE·01:11 PM
Data Sourced
via MITRE·01:11 PM
Description
Data Sourced
via NVD·02:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2017-17678.
2
What is the severity of CVE-2017-17678?
The severity of CVE-2017-17678 is medium, with a severity value of 6.1.
3
What is affected by CVE-2017-17678?
BMC Remedy Mid Tier 9.1SP3 is affected by CVE-2017-17678.
4
What is the impact of CVE-2017-17678?
CVE-2017-17678 allows for cross-site scripting (XSS) attacks and can potentially lead to unauthorized access or manipulation of sensitive data.
5
How can I mitigate CVE-2017-17678?
To mitigate CVE-2017-17678, it is recommended to apply the available fixes provided by BMC and to follow their official documentation on AR System security vulnerabilities.