Description
|
|
Multiple vulnerabilities were identified in Blue Coat Reporter, which may be exploited by remote or local attackers to conduct cross site scripting, obtain elevated privileges or perform certain actions. The first flaw may be exploited by an authenticated user with a non-administrative privileges to gain administrative privileges. The second vulnerability could be exploited by a remote attacker with no user privileges to add a license. The third issue may be exploited by a user with administrative privileges to conduct a cross site scripting attack by entering a specially crafted username in the "Add User" window or a specially crafted license key in the "Licensing" page.
|