Home
Home
Trends
Trends
Vulnerabilities
Vulnerabilities
News
News
Researchers
Researchers
Why dbugs?
Why dbugs?
Settings

Alexander Stra�Heim

Researcher fromSySS GmbH
#53958of 56,338
4.3Total CVSS
Vulnerabilities · 1
PT-2015-7290
4.3
2015-08-20
Opentext · Opentext Secure Mft · CVE-2015-6530
**Name of the Vulnerable Software and Affected Versions** OpenText Secure MFT versions 2013 before 2013 R3 P6 OpenText Secure MFT versions 2014 before 2014 R2 P2 **Description** A cross-site scripting (XSS) issue allows remote attackers to inject arbitrary web script or HTML via the `querytext` parameter to the "userdashboard.jsp" endpoint. **Recommendations** For OpenText Secure MFT versions 2013 before 2013 R3 P6, update to version 2013 R3 P6 or later. For OpenText Secure MFT versions 2014 before 2014 R2 P2, update to version 2014 R2 P2 or later.