CVE Database
/

CVE-2018-1155

Back to search

CVE-2018-1155

Published: Aug 2, 2018

Modified: Sep 17, 2024

PUBLISHED

Description

In SecurityCenter versions prior to 5.7.0, a cross-site scripting (XSS) issue could allow an authenticated attacker to inject JavaScript code into an image filename parameter within the Reports feature area. Properly updated input validation techniques have been implemented to correct this issue.

VendorProductVersions

Tenable

SecurityCenter

affected
All versions prior to 5.7.0

References

1041431
vdb-entry
x_refsource_SECTRACK

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now
CVE-2018-1155 - Security Vulnerability | QwikSec