Vulnerabilities > Riverbed > Steelcentral Appinternals Dynamic Sampling Agent > Medium

DATE CVE VULNERABILITY TITLE RISK
2022-03-10 CVE-2021-42856 Cross-site Scripting vulnerability in Riverbed Steelcentral Appinternals Dynamic Sampling Agent 10.0.0/11.0.0/12.0.0
It was discovered that the /DsaDataTest endpoint is susceptible to Cross-site scripting (XSS) attack.
network
low complexity
riverbed CWE-79
6.1
2022-03-10 CVE-2021-42857 Path Traversal vulnerability in Riverbed Steelcentral Appinternals Dynamic Sampling Agent 10.0.0/11.0.0/12.0.0
It was discovered that the SteelCentral AppInternals Dynamic Sampling Agent's (DSA) AgentDaServlet has directory traversal vulnerabilities at the "/api/appInternals/1.0/agent/da/pcf" API.
network
low complexity
riverbed CWE-22
5.3