CVE-2014-5348
Riverbed Steelapp Traffic Manager - XSS
Title source: ruleDescription
Cross-site scripting (XSS) vulnerability in apps/zxtm/locallog.cgi in Riverbed Stingray (aka SteelApp) Traffic Manager Virtual Appliance 9.6 patchlevel 9620140312 allows remote attackers to inject arbitrary web script or HTML via the logfile parameter.
Scores
EPSS
0.0022
EPSS Percentile
45.1%
Details
CWE
CWE-79
Status
published
Products (2)
riverbed/steelapp_traffic_manager
n/a/n/a
Published
Aug 19, 2014
Tracked Since
Feb 18, 2026