CVE-2018-3699: XSS
Published Nov 14, 2018
·Updated
Cross-site scripting in the Intel RAID Web Console v3 for Windows may allow an unauthenticated user to elevate privilege via remote access.
Affected Software
1 affected component
Intel Raid Web Console 3 Windows<4.186
Event History
Nov 14, 2018
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this cross-site scripting vulnerability?
The vulnerability ID for this cross-site scripting vulnerability is CVE-2018-3699.
2
What is the affected software?
The affected software is Intel RAID Web Console v3 for Windows.
3
How can an unauthenticated user exploit this vulnerability?
An unauthenticated user can exploit this vulnerability by accessing the Intel RAID Web Console remotely.
4
What is the severity of this vulnerability?
The severity of this vulnerability is medium with a CVSS score of 6.1.
5
How can I fix this cross-site scripting vulnerability in Intel RAID Web Console v3 for Windows?
To fix this cross-site scripting vulnerability, update the Intel RAID Web Console to version 4.186 or higher.