Vulnerabilities > Netapp > Virtual Desktop Service

DATE CVE VULNERABILITY TITLE RISK
2023-06-26 CVE-2020-23064 Cross-site Scripting vulnerability in multiple products
Cross Site Scripting vulnerability in jQuery 2.2.0 through 3.x before 3.5.0 allows a remote attacker to execute arbitrary code via the <options> element.
network
low complexity
jquery netapp CWE-79
6.1
2021-12-23 CVE-2021-27007 Unspecified vulnerability in Netapp Virtual Desktop Service
NetApp Virtual Desktop Service (VDS) when used with an HTML5 gateway is susceptible to a vulnerability which when successfully exploited could allow an unauthenticated attacker to takeover a Remote Desktop Session.
network
low complexity
netapp
7.5