CVE-2018-8721: XSS
Zoho ManageEngine EventLog Analyzer version 11.0 build 11000 has Stored XSS related to the index2.do?url=editAlertForm&tab=alert&alert=profile URI and the Edit Alert Profile screen
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for Zoho ManageEngine EventLog Analyzer version 11.0 build 11000?
The vulnerability ID is CVE-2018-8721.
What is the severity of CVE-2018-8721?
The severity of CVE-2018-8721 is medium, with a CVSS score of 6.1.
What is the affected software for CVE-2018-8721?
The affected software is Zoho ManageEngine EventLog Analyzer version 11.0 build 11000.
What is the description of CVE-2018-8721?
CVE-2018-8721 is a stored cross-site scripting (XSS) vulnerability in Zoho ManageEngine EventLog Analyzer version 11.0 build 11000 related to the index2.do?url=editAlertForm&tab=alert&alert=profile URI and the Edit Alert Profile screen.
Are there any references for CVE-2018-8721?
Yes, you can find references for CVE-2018-8721 at the following links: http://www.securityfocus.com/bid/103424 and https://pitstop.manageengine.com/portal/community/topic/manageengine-eventlog-analyzer-11-0-build-11000-stored-cross-site-scripting-attack