First published: Wed Jul 27 2022(Updated: )
VISAM VBASE version 11.6.0.6 does not neutralize or incorrectly neutralizes user-controllable input before the data is placed in output used as a public-facing webpage.
Credit: ics-cert@hq.dhs.gov
Affected Software | Affected Version | How to fix |
---|---|---|
Visam Vbase Web-remote | =11.6.0.6 | |
VISAM VBASE Pro-RT/ Server-RT (Web Remote) | =11.6.0.6 |
VISAM recommends users update to VBASE v11.7.0.2 or later. Users may obtain a download link by submitting a request form. For more information, please contact VISAM using the information provided on the company contact page.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.