CVE-2014-2670
ZOHO ManageEngine OpStor <build 8500 - XSS
Title source: llmDescription
Cross-site scripting (XSS) vulnerability in Properties.do in ZOHO ManageEngine OpStor before build 8500 allows remote authenticated users to inject arbitrary web script or HTML via the name parameter, a different vulnerability than CVE-2014-0344.
Scores
EPSS
0.0058
EPSS Percentile
68.6%
Details
CWE
CWE-79
Status
published
Products (2)
zohocorp/manageengine_opstor
< 8.3
n/a/n/a
Published
Mar 29, 2014
Tracked Since
Feb 18, 2026