CVE-2018-18660: XSS
An issue was discovered in Arcserve Unified Data Protection (UDP) through 6.5 Update 4. There is a DDI-VRT-2018-21 Reflected Cross-site Scripting via /authenticationendpoint/domain.jsp issue.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2018-18660?
CVE-2018-18660 is a vulnerability discovered in Arcserve Unified Data Protection (UDP) through 6.5 Update 4, which allows for reflected cross-site scripting via the /authenticationendpoint/domain.jsp endpoint.
What is the severity of CVE-2018-18660?
CVE-2018-18660 has a severity value of 6.1, which is considered medium.
How can I check if my Arcserve UDP version is affected?
You can check if your Arcserve UDP version is affected by referring to the list of affected software versions provided in the vulnerability description.
How do I fix CVE-2018-18660?
To fix CVE-2018-18660, it is recommended to apply the necessary updates and patches provided by Arcserve as mentioned in the reference links.
Where can I find more information about CVE-2018-18660?
You can find more information about CVE-2018-18660 in the reference links provided in the vulnerability description.