Vulnerabilities > Microfocus > Open Enterprise Server > 2015.1

DATE CVE VULNERABILITY TITLE RISK
2019-05-02 CVE-2019-3490 Cross-site Scripting vulnerability in Microfocus Open Enterprise Server 2015.1/2018.0/2018.1
A DOM based XSS vulnerability has been identified in the Netstorage component of Open Enterprise Server (OES) allowing a remote attacker to execute javascript in the victims browser by tricking the victim into clicking on a specially crafted link.
network
low complexity
microfocus CWE-79
6.1