Page 2 of 6 results (0.003 seconds)

CVSS: 6.1EPSS: 0%CPEs: 1EXPL: 0

An issue was discovered in Zoho ManageEngine EventLog Analyzer 11.12. A Cross-Site Scripting vulnerability allows a remote attacker to inject arbitrary web script or HTML via the search functionality (the search box of the Dashboard). Se ha descubierto un problema en Zoho ManageEngine EventLog Analyzer 11.12. Una vulnerabilidad de Cross-Site Scripting (XSS) permite que un atacante remoto inyecte scripts web o HTML arbitrarios mediante la funcionalidad de búsqueda (el cuadro de búsqueda del Dashboard). • https://www.manageengine.com/products/eventlog/release-notes.html • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •