Policy Authority For Unified Communications
policy_authority_for_unified_communications
Vendor: Quest • 13 CVEs
CVEs (13)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Quest 1Policy Authority For Unified Communications Jun 17, 2026 Jan 11, 2021 N/A· v4 5.4 MEDIUM· v3 3.5 LOW· v2 Reflected XSS in Quest Policy Authority 8.1.2.200 allows remote attackers to inject malicious code into the browser via a specially crafted link to the BrowseDirs.do file via the title parameter. NOTE: This vulnerability...Show more |
1Quest 1Policy Authority For Unified Communications Jun 17, 2026 Jan 11, 2021 N/A· v4 6.1 MEDIUM· v3 4.3 MEDIUM· v2 Reflected XSS in Quest Policy Authority 8.1.2.200 allows remote attackers to inject malicious code into the browser via a specially crafted link to the /WebCM/Applications/Reports/index.jsp file via the by parameter. NOT...Show more |
1Quest 1Policy Authority For Unified Communications Jun 17, 2026 Jan 11, 2021 N/A· v4 6.1 MEDIUM· v3 4.3 MEDIUM· v2 Reflected XSS in Quest Policy Authority 8.1.2.200 allows remote attackers to inject malicious code into the browser via a specially crafted link to the /WebCM/index.jsp file via the msg parameter. NOTE: This vulnerabilit...Show more |
1Quest 1Policy Authority For Unified Communications Jun 17, 2026 Jan 11, 2021 N/A· v4 5.4 MEDIUM· v3 3.5 LOW· v2 Reflected XSS in Quest Policy Authority 8.1.2.200 allows remote attackers to inject malicious code into the browser via a specially crafted link to the Error.jsp file via the err parameter (or indirectly via the cpr, tcp...Show more |
1Quest 1Policy Authority For Unified Communications Jun 17, 2026 Jan 11, 2021 N/A· v4 5.4 MEDIUM· v3 3.5 LOW· v2 Reflected XSS in Quest Policy Authority 8.1.2.200 allows remote attackers to inject malicious code into the browser via a specially crafted link to the ReportPreview.do file via the referer parameter. NOTE: This vulnerab...Show more |
1Quest 1Policy Authority For Unified Communications Jun 17, 2026 Jan 11, 2021 N/A· v4 6.5 MEDIUM· v3 4.3 MEDIUM· v2 CSRF in Web Compliance Manager in Quest Policy Authority 8.1.2.200 allows remote attackers to force user modification/creation via a specially crafted link to the submitUser.jsp file. NOTE: This vulnerability only affect...Show more |
1Quest 1Policy Authority For Unified Communications Jun 17, 2026 Jan 11, 2021 N/A· v4 5.4 MEDIUM· v3 3.5 LOW· v2 Reflected XSS in Quest Policy Authority 8.1.2.200 allows remote attackers to inject malicious code into the browser via a specially crafted link to the BrowseAssets.do file via the title parameter. NOTE: This vulnerabili...Show more |
1Quest 1Policy Authority For Unified Communications Jun 17, 2026 Jan 11, 2021 N/A· v4 5.4 MEDIUM· v3 3.5 LOW· v2 Stored XSS in Quest Policy Authority 8.1.2.200 allows remote attackers to store malicious code in multiple fields (first name, last name, and logon name) when creating or modifying a user via the submitUser.jsp file. NOT...Show more |
1Quest 1Policy Authority For Unified Communications Jun 17, 2026 Jan 11, 2021 N/A· v4 6.1 MEDIUM· v3 4.3 MEDIUM· v2 Reflected XSS in Quest Policy Authority 8.1.2.200 allows remote attackers to inject malicious code into the browser via a specially crafted link to the /WebCM/Applications/Search/index.jsp file via the added parameter. N...Show more |
1Quest 1Policy Authority For Unified Communications Jun 17, 2026 Jan 11, 2021 N/A· v4 6.1 MEDIUM· v3 4.3 MEDIUM· v2 Reflected XSS in Web Compliance Manager in Quest Policy Authority version 8.1.2.200 allows attackers to inject malicious code into the browser via a specially crafted link to the cConn.jsp file via the ur parameter. NOTE...Show more |
1Quest 1Policy Authority For Unified Communications Jun 17, 2026 Jan 11, 2021 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 Server Side Request Forgery (SSRF) in Web Compliance Manager in Quest Policy Authority version 8.1.2.200 allows attackers to scan internal ports and make outbound connections via the initFile.jsp file. NOTE: This vulnera...Show more |
1Quest 1Policy Authority For Unified Communications Jun 17, 2026 Jan 11, 2021 N/A· v4 6.1 MEDIUM· v3 4.3 MEDIUM· v2 Reflected XSS in Quest Policy Authority version 8.1.2.200 allows attackers to inject malicious code into the browser via a specially crafted link to the PolicyAuthority/Common/FolderControl.jsp file via the unqID paramet...Show more |
1Quest 1Policy Authority For Unified Communications Jun 17, 2026 Jan 11, 2021 N/A· v4 6.1 MEDIUM· v3 4.3 MEDIUM· v2 Reflected XSS in Web Compliance Manager in Quest Policy Authority version 8.1.2.200 allows attackers to inject malicious code into the browser via a specially crafted link to the initFile.jsp file via the msg parameter....Show more |