CVE-2015-0526

RSA Validation Manager < 3.2 - Cross-Site Scripting via displayMode or wrapPreDisplayMode Parameter

Title source: llm
STIX 2.1

Description

Multiple cross-site scripting (XSS) vulnerabilities in EMC RSA Validation Manager (RVM) 3.2 before build 201 allow remote attackers to inject arbitrary web script or HTML via the (1) displayMode or (2) wrapPreDisplayMode parameter.

References (2)

Core 2
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://www.securitytracker.com/id/1032590
Mailing List mailing-list x_refsource_bugtraq
http://seclists.org/bugtraq/2015/Jun/88

Scores

EPSS 0.0022
EPSS Percentile 45.2%

Details

CWE
CWE-79
Status published
Products (1)
emc/rsa_validation_manager < 3.2
Published Jun 22, 2015
Tracked Since Feb 18, 2026