Affected configuration(s):
cpe:/a:altitude:altitude_unified_customer_interaction:7.5
Date published: 2014-12-05T10:59:07.947-05:00
Date last modified: 2014-12-05T20:38:31.303-05:00
CVSS Score: 4.3
Principal attack vector: NETWORK
Complexity: MEDIUM
Reference URL: http://packetstormsecurity.com/files/129372/Altitude-uAgent-Altitude-uCI-7.5-XSS.html
Summary: Multiple cross-site scripting (XSS) vulnerabilities in Altitude uAgent in Altitude uCI (Unified Customer Interaction) 7.5 allow remote attackers to inject arbitrary web script or HTML via (1) an email hyperlink or the (2) style parameter in the image attribute section.