CVE Database
/

CVE-2011-0550

Back to search

CVE-2011-0550

Published: Aug 15, 2011

Modified: Aug 6, 2024

PUBLISHED

Description

Multiple cross-site scripting (XSS) vulnerabilities in the Web Interface in the Endpoint Protection Manager in Symantec Endpoint Protection (SEP) 11.0.600x through 11.0.6300 allow remote attackers to inject arbitrary web script or HTML via (1) the token parameter to portal/Help.jsp or (2) the URI in a console/apps/sepm request.

VendorProductVersions

n/a

n/a

affected
n/a

References

1025919
vdb-entry
x_refsource_SECTRACK
74466
vdb-entry
x_refsource_OSVDB
symantec-endpoint-sepm-xss(69136)
vdb-entry
x_refsource_XF
48231
vdb-entry
x_refsource_BID
43662
third-party-advisory
x_refsource_SECUNIA
74465
vdb-entry
x_refsource_OSVDB

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now