Multiple stored cross-site scripting (XSS) flaws were found in ManageIQ EVM. A remote attacker could provide a specially-crafted URL that, when visited, would lead to arbitrary HTML or web script injection.
Comment 1Arun Babu Neelicattu
2013-01-29 03:09:20 UTC
Acknowledgements:
This issue was discovered by David Jorm of the Red Hat Security Response Team.