Lucene search

K
msrcMsrcMSRC:28790B8A1E0E003BFD6B8221E862F13A
HistoryOct 19, 2022 - 1:01 p.m.

Awareness and guidance related to potential Service Fabric Explorer (SFX) v1 web client risk

2022-10-1913:01:00
msrc-blog.microsoft.com
18
service fabric explorer
sfxv1
cross-site scripting

0.001 Low

EPSS

Percentile

21.9%

Summary Microsoft was recently made aware of a Cross-Site Scripting (XSS) vulnerability (CVE-2022-35829), that under limited circumstances, affects older versions of Service Fabric Explorer (SFX). The current default SFX web client (SFXv2) is not vulnerable to this attack. However, customers can manually switch from the default web client (SFXv2) to an older vulnerable SFX web โ€ฆ

Awareness and guidance related to potential Service Fabric Explorer (SFX) v1 web client risk Read More ยป

0.001 Low

EPSS

Percentile

21.9%