Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2023-78232
HistoryOct 11, 2023 - 12:00 a.m.

Dell SmartFabric Storage Software HTML Injection Vulnerability

2023-10-1100:00:00
China National Vulnerability Database
www.cnvd.org.cn
6
dell smartfabric storage software
html injection
vulnerability
arbitrary web script
dell
usa
filtering
escaping
user-supplied data
crafted payload
cnvd

AI Score

7.3

Confidence

High

EPSS

0.001

Percentile

21.3%

Dell SmartFabric Storage Software is a stand-alone storage software solution from Dell (USA). Dell SmartFabric Storage Software version 1.4 suffers from an HTML injection vulnerability that stems from the application’s lack of effective filtering and escaping of user-supplied data, which can be exploited by an attacker to execute arbitrary web script or HTML by injecting a crafted payload.

AI Score

7.3

Confidence

High

EPSS

0.001

Percentile

21.3%

Related for CNVD-2023-78232