Vulnerability Details CVE-2014-5024
Cross-site scripting (XSS) vulnerability in sgms/panelManager in Dell SonicWALL GMS, Analyzer, and UMA before 7.2 SP1 allows remote attackers to inject arbitrary web script or HTML via the node_id parameter.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.014
EPSS Ranking 79.2%
CVSS Severity
CVSS v2 Score 4.3
Products affected by CVE-2014-5024
-
cpe:2.3:a:sonicwall:analyzer:7.0
-
cpe:2.3:a:sonicwall:analyzer:7.1
-
cpe:2.3:a:sonicwall:analyzer:7.2
-
cpe:2.3:a:sonicwall:global_management_system:-
-
cpe:2.3:a:sonicwall:global_management_system:4.1
-
cpe:2.3:a:sonicwall:global_management_system:5.0
-
cpe:2.3:a:sonicwall:global_management_system:5.1
-
cpe:2.3:a:sonicwall:global_management_system:6.0
-
cpe:2.3:a:sonicwall:global_management_system:7.0
-
cpe:2.3:a:sonicwall:global_management_system:7.1
-
cpe:2.3:a:sonicwall:global_management_system:7.2
-
cpe:2.3:h:sonicwall:uma_em5000:-