Dell Unity, Dell UnityVSA, and Dell UnityXT versions prior to 5.2.0.0.5.173 contain a Reflected Cross-Site Scripting Vulnerability in Unisphere GUI. An Unauthenticated Remote Attacker could potentially exploit this vulnerability, leading to the execution of malicious HTML or JavaScript code in a victim user's web browser in the context of the vulnerable web application. Exploitation may lead to information disclosure, session theft, or client-side request forgery.
2022-05-26T16:15:08.383
2024-11-21T06:58:27.990
Modified
CVSSv3.1: 5.3 (MEDIUM)
AV:N/AC:M/Au:N/C:N/I:P/A:N
8.6
2.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | dell | unity_operating_environment | < 5.2.0.0.5.173 | Yes |
Application | dell | unity_xt_operating_environment | < 5.2.0.0.5.173 | Yes |
Application | dell | unityvsa_operating_environment | < 5.2.0.0.5.173 | Yes |