quest policy-authority-unified-communications CVE-2020-35204 is a vulnerability in Quest Software Policy Authority Unified Communications
Published on January 11, 2021

Reflected XSS in Quest Policy Authority version 8.1.2.200 allows attackers to inject malicious code into the browser via a specially crafted link to the PolicyAuthority/Common/FolderControl.jsp file via the unqID parameter. NOTE: This vulnerability only affects products that are no longer supported by the maintainer

NVD


Products Associated with CVE-2020-35204

Want to know whenever a new CVE is published for Quest Software Policy Authority Unified Communications? stack.watch will email you.

 

Exploit Probability

EPSS
0.24%
Percentile
46.99%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.