MEDIUM
An issue was discovered in Arcserve Unified Data Protection (UDP) through 6.5 Update 4
Published Oct 26, 2018
6.1
MEDIUMCVSS 3.1
EPSS 0.90%
Description
An issue was discovered in Arcserve Unified Data Protection (UDP) through 6.5 Update 4. There is a DDI-VRT-2018-21 Reflected Cross-site Scripting via /authenticationendpoint/domain.jsp issue.
Affected products
Remediation
No remediation recorded yet.
Weaknesses (1)
References (4)
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2018-10376 Advisory
- https://support.arcserve.com/s/article/360001392563?language=en_US x_refsource_MISCPatchVendor Advisory
- https://support.arcserve.com/s/article/Security-vulnerabilities-with-Arcserve-UDP-and-fixes-for-them?language=en_US x_refsource_MISCPatchVendor Advisory
- https://www.digitaldefense.com/blog/zero-day-alerts/arcserve-disclosure/ x_refsource_MISCThird Party Advisory
| Link | Providers | Tags |
|---|---|---|
| https://euvd.enisa.europa.eu/vulnerability/EUVD-2018-10376 | Advisory | |
| https://support.arcserve.com/s/article/360001392563?language=en_US | x_refsource_MISCPatchVendor Advisory | |
| https://support.arcserve.com/s/article/Security-vulnerabilities-with-Arcserve-UDP-and-fixes-for-them?language=en_US | x_refsource_MISCPatchVendor Advisory | |
| https://www.digitaldefense.com/blog/zero-day-alerts/arcserve-disclosure/ | x_refsource_MISCThird Party Advisory |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Oct 26, 2018
Updated Sep 16, 2024
Reserved Oct 26, 2018
Link CVE-2018-18660
CISA Vulnrichment
Updated n/a
ENISA EUVD
EUVD-2018-10376 Assigner mitre
Published Oct 26, 2018
Updated Sep 16, 2024
Exploited since n/a
Link EUVD-2018-10376