CVE-2018-1187: XSS
Dell EMC Isilon versions between 8.1.0.0 - 8.1.0.1, 8.0.1.0 - 8.0.1.2, and 8.0.0.0 - 8.0.0.6 is affected by a cross-site scripting vulnerability in the Network Configuration page within the OneFS web administration interface. A malicious administrator may potentially inject arbitrary HTML or JavaScript code in the user's browser session in the context of the OneFS website.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this Dell EMC Isilon vulnerability?
The vulnerability ID for this Dell EMC Isilon vulnerability is CVE-2018-1187.
Which versions of Dell EMC Isilon are affected by this vulnerability?
The affected versions of Dell EMC Isilon are between 8.1.0.0 - 8.1.0.1, 8.0.1.0 - 8.0.1.2, and 8.0.0.0 - 8.0.0.6.
What is the severity rating of CVE-2018-1187?
CVE-2018-1187 has a severity rating of 4.8, which is considered medium.
What is the CWE category of this vulnerability?
The CWE category of this vulnerability is CWE-79, which is related to Cross-Site Scripting (XSS).
How can I fix this vulnerability in Dell EMC Isilon?
To fix this vulnerability in Dell EMC Isilon, apply the necessary security patches or updates provided by Dell EMC.