Main Banks Non-banking financial sector Cyber fraud

CVE-2013-3320

Cross-site Scripting (XSS) vulnerability in NetApp OnCommand System Manager before 2.2 allows remote attackers to inject arbitrary web script or HTML via the 'full-name' and 'comment' fields.

    Product

  • netapp oncommand_system_manager -
  • netapp oncommand_system_manager 2.0.2
  • netapp oncommand_system_manager 2.1

Score

4.3

Source

http://nvd.nist.gov

Access-complexity

MEDIUM

Access-vector

NETWORK