← Back to CVE List

CVE-2019-3754

Published: 2019-09-03T17:15Z
Last Modified: 2024-11-21T04:42Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
Dell EMC Unity Operating Environment versions prior to 5.0.0.0.5.116, Dell EMC UnityVSA versions prior to 5.0.0.0.5.116 and Dell EMC VNXe3200 versions prior to 3.1.10.9946299 contain a reflected cross-site scripting vulnerability on the cas/logout page. A remote unauthenticated attacker could potentially exploit this vulnerability by tricking a victim application user to supply malicious HTML or Java Script code to Unisphere, which is then reflected back to the victim and executed by the web browser. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt