vendor:
MoveIt
by:
1N3@CrowdShield
8.8
CVSS
HIGH
Stored Cross-Site Scripting (XSS)
79
CWE
Product Name: MoveIt
Affected Version From: 8.1
Affected Version To: 9.4
Patch Exists: YES
Related CWE: N/A
CPE: a:ipswitch:moveit
Metasploit:
N/A
Other Scripts:
N/A
Platforms Tested: N/A
2017
IPSwitch MoveIt Stored Cross Site Scripting (XSS)
IPSwitch MoveIt v8.1 is vulnerable to a Stored Cross-Site Scripting (XSS) vulnerability. Attackers can leverage this vulnerability to send malicious messages to other users in order to steal session cookies and launch client-side attacks.
Mitigation:
Update to version 9.5