漏洞标题
ISS BlackICE PC Protection 检测跨站脚本(XSS)漏洞 特权管理
漏洞描述信息
ISS BlackICE PC Protection 检测跨站脚本攻击权限管理
CVSS信息
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
漏洞类别
N/A
漏洞标题
ISS BlackICE PC Protection Cross Site Scripting Detection privileges management
漏洞描述信息
A vulnerability was found in ISS BlackICE PC Protection and classified as critical. Affected by this issue is the component Cross Site Scripting Detection. The manipulation as part of POST/PUT/DELETE/OPTIONS Request leads to privilege escalation. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. It is recommended to upgrade the affected component. NOTE: This vulnerability only affects products that are no longer supported by the maintainer
CVSS信息
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
漏洞类别
特权管理不恰当
漏洞标题
IBM ISS BlackICE PC 安全漏洞
漏洞描述信息
IBM ISS BlackICE PC是美国IBM公司的一个用于 Windows 桌面的个人防火墙/IDS。 IBM ISS BlackICE PC Protection 存在安全漏洞,该漏洞源于 Cross Site Scripting Detection 在处理 POST/PUT/DELETE/OPTIONS 请求的一部分的操作时会导致权限提升。。
CVSS信息
N/A
漏洞类别
其他