CVE Database
/

CVE-2016-9316

Back to search

CVE-2016-9316

Published: Feb 21, 2017

Modified: Aug 6, 2024

PUBLISHED

Description

Multiple stored Cross-Site-Scripting (XSS) vulnerabilities in com.trend.iwss.gui.servlet.updateaccountadministration in Trend Micro InterScan Web Security Virtual Appliance (IWSVA) version 6.5-SP2_Build_Linux_1707 and earlier allow authenticated, remote users with least privileges to inject arbitrary HTML/JavaScript code into web pages. This was resolved in Version 6.5 CP 1737.

VendorProductVersions

n/a

n/a

affected
n/a

References

96252
vdb-entry
x_refsource_BID
1037849
vdb-entry
x_refsource_SECTRACK

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now