CVE-2016-8583

MEDIUM

AlienVault OSSIM & USM <5.3.2 - XSS

Title source: llm

Description

Multiple GET parameters in the vulnerability scan scheduler of AlienVault OSSIM and USM before 5.3.2 are vulnerable to reflected XSS.

Scores

CVSS v3 6.1
EPSS 0.0030
EPSS Percentile 53.1%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

Classification

CWE
CWE-79
Status published

Affected Products (3)

alienvault/open_source_security_information_and_event_management < 5.3.1
alienvault/unified_security_management < 5.3.1
n/a/n/a

Timeline

Published Oct 28, 2016
Tracked Since Feb 18, 2026